Huge News!Announcing our $40M Series B led by Abstract Ventures.Learn More
Socket
Sign inDemoInstall
Socket

bulk-run-nsp

Package Overview
Dependencies
Maintainers
1
Versions
4
Alerts
File Explorer

Advanced tools

Socket logo

Install Socket

Detect and block malicious and high-risk dependencies

Install

bulk-run-nsp

Small library that will find all directories in a rootPath with a package.json file and will run nsp (Node Security Project) on it.

  • 1.0.3
  • latest
  • Source
  • npm
  • Socket score

Version published
Weekly downloads
0
Maintainers
1
Weekly downloads
 
Created
Source

build status npm version codecov

bulk-run-nsp

Small library that will find all directories in a rootPath with a package.json file and will run nsp (Node Security Project) on it.

Why?

I had a lot of old projects that I didn't worked for a while and I was running out of free space on my disk. I ran a command that would delete all the node_modules folders in a given rootPath and I "instantly" gained 20GB of free disk.

After that I thought I should have a better way to deal with this and started creating a electron application to manage my workspace, and created a few of core modules to support it, such as:

How it works?

This module uses query-paths to recursively find all the folders with a package.json file. Then it runs nsp and returns the json format from nsp in a object with the following structure:

{
    "isVulnerable": true,
    "projectPath": "/users/username/project",
    "results": []
}

Being the array results the output of the json formatter of nsp module.

If you pass showLog config as true, then you'll get a command line output in a table like structure, just as the one default formatter from nsp.

Usage

const bulkRunNsp = require('bulk-run-nsp');

const bulk = bulkRunNsp({ rootPath: '/Users/username/dev', showLog: true });
bulk.on('data', (report) => {
    console.log('report received for: ', report.projectPath);
});

bulk.on('error', (report) => {
    console.log('error received: ', report.error, ' for: ', report.projectPath);
});

bulk.on('end', () => {
    console.log('end');
});

Keywords

FAQs

Package last updated on 15 Jan 2017

Did you know?

Socket

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Install

Related posts

SocketSocket SOC 2 Logo

Product

  • Package Alerts
  • Integrations
  • Docs
  • Pricing
  • FAQ
  • Roadmap
  • Changelog

Packages

npm

Stay in touch

Get open source security insights delivered straight into your inbox.


  • Terms
  • Privacy
  • Security

Made with ⚡️ by Socket Inc