
Research
TeamPCP-Linked Supply Chain Attack Hits SAP CAP and Cloud MTA npm Packages
Compromised SAP CAP npm packages download and execute unverified binaries, creating urgent supply chain risk for affected developers and CI/CD environments.
checkcommand
Advanced tools
Check that a command exists, throw an error message of your choice otherwise.
Install checkcommand by running:
$ npm install --save checkcommand
Ensure that a command exists. Throw an error with message otherwise.
This function supports promises.
Example:
checkcommand = require('checkcommand')
message = '''
Wget is missing from your system. Install it from brew:
$ brew install wget
'''
checkcommand.ensure('wget', message).then ->
console.log('It seems that wget is installed!')
.catch (error) ->
console.error(error)
checkcommand = require('checkcommand')
message = '''
Wget is missing from your system. Install it from brew:
$ brew install wget
'''
checkcommand.ensure 'wget', message, (error) ->
if error?
console.error(error.message)
else
console.log('It seems that wget is installed!')
Ensure multiple commands. A utility function to prevent calling checkcommand.ensure() multiple times.
The commands object contains command names as property keys, and error messages as values.
Example:
checkcommand = require('checkcommand')
checkcommand.ensureMultiple
'wget': 'Missing wget'
'curl': 'Missing curl'
.then ->
console.log('It seems that wget and curl are installed!')
.catch (error) ->
console.error(error)
checkcommand = require('checkcommand')
checkcommand.ensureMultiple
'wget': 'Missing wget'
'curl': 'Missing curl'
, (error) ->
if error?
console.error(error.message)
else
console.log('It seems that wget and curl are installed!')
Run the test suite by doing:
$ gulp test
Before submitting a PR, please make sure that you include tests, and that coffeelint runs without any warning:
$ gulp lint
If you're having any problem, please raise an issue on GitHub.
The project is licensed under the MIT license.
FAQs
Check that a command exists
The npm package checkcommand receives a total of 7 weekly downloads. As such, checkcommand popularity was classified as not popular.
We found that checkcommand demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
Compromised SAP CAP npm packages download and execute unverified binaries, creating urgent supply chain risk for affected developers and CI/CD environments.

Company News
Socket has acquired Secure Annex to expand extension security across browsers, IDEs, and AI tools.

Research
/Security News
Socket is tracking cloned Open VSX extensions tied to GlassWorm, with several updated from benign-looking sleepers into malware delivery vehicles.