Security News
Research
Data Theft Repackaged: A Case Study in Malicious Wrapper Packages on npm
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
botkit-discord
Advanced tools
🤖👾 A Botkit connector for Discord
This Botkit connector would not be possible without the powerful and simple library, izy521/discord.io.
Please Note: This is still a work in progress and I will continue to add more functionalities as I dig deeper into documentation.
const BotkitDiscord = require('botkit-discord');
const config = {
token: '**' // Discord bot token
}
const discordBot = BotkitDiscord(config);
discordBot.hears('hello','direct_message',(bot, message) => {
bot.reply('how goes there :)!')
});
Refer to Botkit documentation to utilize all of the other Botkit features.
Event | Description |
---|---|
direct_message | the bot received a direct message from a user |
direct_mention | the bot was addressed directly in a channel ("@bot hello") |
mention | the bot was mentioned by someone in a message ("hello @bot") |
Event | Description |
---|---|
disconnect | Bot has disconnected or failed to login |
ready | Bot is connected |
More to come (Audio, Voice, etc)
Ⓒ MIT (Brandon Him / brh55)
Please let me know if you plan on forking or would like professional support.
FAQs
A Botkit connector for Discord with support for text, voice, attachments, embedded messages, and more.
The npm package botkit-discord receives a total of 28 weekly downloads. As such, botkit-discord popularity was classified as not popular.
We found that botkit-discord demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Research
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
Research
Security News
Attackers used a malicious npm package typosquatting a popular ESLint plugin to steal sensitive data, execute commands, and exploit developer systems.
Security News
The Ultralytics' PyPI Package was compromised four times in one weekend through GitHub Actions cache poisoning and failure to rotate previously compromised API tokens.