
Security News
vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
A lightweight CLI to quickly compress files using Brotli Compression algorithm.
npx brrr file.txt
Install the brrr
package using npm or yarn.
npm install --global brrr
# or, if you like yarn more:
yarn global add brrr
# or, use npx for one-off runs:
npx brrr [SEE USAGE BELOW]
Above will install brrr
as a command line utility.
# compress file.txt and write output to file.txt.br
$ brrr file.txt
# compress all JS files in current directory and write output in OUT directory
$ brrr *.js -o OUT
# Use with pipes
$ brrr --stdin < INPUT > OUTPUT
$ cat INPUT.txt | brrr --stdin > OUTPUT
$ brrr input.txt --stdout
# Compress all files in a directory
$ find INPUT_DIR -type f | xargs brrr -o OUT_DIR
You can replace brrr
above with brotli
to sound more professional (or if miss a few r in previous command — finding a good package name is difficult). That is, the following also works just as fine:
$ brotli file.txt
Run brotli -h
or see help.md for details.
MIT.
FAQs
CLI to compress files using Brotli Compression algorithm.
The npm package brrr receives a total of 2 weekly downloads. As such, brrr popularity was classified as not popular.
We found that brrr demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.