
Research
Malicious npm Packages Impersonate Flashbots SDKs, Targeting Ethereum Wallet Credentials
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
browserify-istanbul
Advanced tools
A browserify transform for the istanbul code coverage tool.
npm install --save-dev browserify-istanbul
There are several ways to register browserify transforms: on the command line, in your package.json
, or using the browserify API.
You can use all of these with browserify-istanbul: see the browserify docs for more info.
There are a few options available to browserify-istanbul when you use it from JavaScript. They are shown in the following code example:
var istanbul = require('browserify-istanbul');
// use without any options...
browserifyBundle.transform(istanbul);
// or with some options...
browserifyBundle.transform(istanbul({
// ignore these glob paths (the ones shown are the defaults)
ignore: ['**/node_modules/**', '**/bower_components/**', '**/test/**', '**/tests/**', '**/*.json'],
// by default, any paths you include in the ignore option are ignored
// in addition to the defaults. set the defaultIgnore option to false
// to only ignore the paths you specify.
defaultIgnore: true
}));
./node_modules/.bin/browserify -t browserify-istanbul test/test-*.js -o bundle.js
./node_modules/.bin/browserify -t [ browserify-istanbul --ignore "**/bower_components/**" ] test/test-*.js -o bundle.js
To load and manipulate coverage reports, the command line tool nyc can be used:
__coverage__
object to ./.nyc_output/coverage.json
.nyc report --reporter=lcov --reporter=text-summary
.See istanbul.js.org for more examples and documentation.
MIT
FAQs
A browserify transform for the istanbul code coverage tool
The npm package browserify-istanbul receives a total of 41,401 weekly downloads. As such, browserify-istanbul popularity was classified as popular.
We found that browserify-istanbul demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
Security News
Ruby maintainers from Bundler and rbenv teams are building rv to bring Python uv's speed and unified tooling approach to Ruby development.
Security News
Following last week’s supply chain attack, Nx published findings on the GitHub Actions exploit and moved npm publishing to Trusted Publishers.