Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Compile static site for production (with sourcemaps), auto-compiles files like `app.coffee -> app.js`
Compile static site for production (with sourcemaps), auto-compiles files like app.coffee -> app.js
.
This is a very early version with almost no test coverage but give it a shot and report any issues. Currently supports: LiveScript
, babel
, coco
, coffee-script
, dogescript
, less
, marked
, myth
, jade
, node-sass
, stylus
, swig
. To use any of these you must do npm install x
as needed (where x
is the name of the lib), baconize does not install them by default.
var baconize = require('baconize');
var source = '/path/to/input/dir';
var target = '/path/to/output/dir';
baconize(source, target).then([successFn],[errorFn]);
How it works:
/path/to/input/dir
:For example, if you have a coffeescript file in /path/to/input/dir/my-app/scripts/index.coffee
then it will output the compiled file as /path/to/output/dir/my-app/scripts/index.js
, and the sourcemap as /path/to/output/dir/my-app/scripts/index.js.map
.
This library is designed for use alongside pingy-in-the-middle.
The easiest way to try this out is to clone
the repo, cd
into it and do:
npm install
npm run example
This will compile a basic demo site to examples/output
.
FAQs
Compile static site for production (with sourcemaps), auto-compiles files like `app.coffee -> app.js`
The npm package baconize receives a total of 42 weekly downloads. As such, baconize popularity was classified as not popular.
We found that baconize demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.