
Security News
Axios Supply Chain Attack Reaches OpenAI macOS Signing Pipeline, Forces Certificate Rotation
OpenAI rotated macOS signing certificates after a malicious Axios package reached its CI pipeline in a broader software supply chain attack.
build-resources
Advanced tools
This is an extension you can use to copy all your resource files into your bin/classes directory (you can modify these path). This is useful if you want to use npm as your build tool, e.g. to build your Java applications.
You can create the following config parameters if you want to. Below you see the default values. The resource files are all files that don't have an extension listed in resources_exclude. The parameter resources_dest is appended to the bin parameter, e.g. bin/classes for the example below.
"config": {
"src": "src",
"bin": "bin",
"resources_exclude": "java|class",
"resources_dest": "classes"
}
Then the only thing you have to do is creating a scripts part in your package.json in order to copy all the resource files to your bin/classes directory:
"devDependencies": {
"build-resources": "^1.0.0"
},
"scripts": {
"build:resources": "build-resources"
}
Now you can run the build command using a simple npm run build:resources.
FAQs
Copies all resource files into your bin directory.
We found that build-resources demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
OpenAI rotated macOS signing certificates after a malicious Axios package reached its CI pipeline in a broader software supply chain attack.

Security News
Open source is under attack because of how much value it creates. It has been the foundation of every major software innovation for the last three decades. This is not the time to walk away from it.

Security News
Socket CEO Feross Aboukhadijeh breaks down how North Korea hijacked Axios and what it means for the future of software supply chain security.