Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Fast and reliable CSV parser based on Papa Parse. Papa Parse is for the browser, Baby Parse is for Node.js.
This package has all the functionality of Papa Parse except for web workers and parsing directly from files. You can pass a string to Baby Parse and use any of the other config options as described in the Papa Parse documentation.
// simply install using npm
npm install babyparse
// pass in the contents of a csv file
parsed = Baby.parse(csv);
// voila
rows = parsed.data;
Baby Parse will assume the input is a filename if it ends in .csv or .txt.
// Parse single file
parsed = Baby.parseFiles(file[, config])
rows = parsed.data
// Parse multiple files
// Files can be either an array of strings or objects { file: filename[, config: config] }
// When using and array of objects and you include a config it will be used in place of the global config
parsed = Baby.parseFiles(files[, globalConfig])
rows = parsed[index].data
For a complete understanding of the power of this library, please refer to the Papa Parse web site.
Rich Harris forked Papa Parse to make Baby Parse. Matt Holt (the author of Papa Parse) helps maintain this fork.
The original PapaParse is MIT licensed. So is BabyParse.
FAQs
Fast and reliable CSV parser based on PapaParse
The npm package babyparse receives a total of 54,428 weekly downloads. As such, babyparse popularity was classified as popular.
We found that babyparse demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.