Research
Security News
Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
cli-highlighter
Advanced tools
This package is a fork of felixfbecker's amazing cli-highlight package which seems to be unmaintained.
Syntax highlighting in your terminal
Output a file
highlight package.json
Color output of another program with piping. Example: A database migration script that logs SQL Queries
db-migrate --dry-run | highlight
Command line options:
Usage: highlight [options] [file] Outputs a file or STDIN input with syntax
highlighting Options: --language, -l Set the langugage explicitely If omitted
will try to auto-detect --theme, -t Use a theme defined in a JSON file --help,
-h Show help
You can use this module programmatically to highlight logs of your Node app. Example:
import highlight from 'cli-highlighter';
import Sequelize from 'sequalize';
const db = new Sequelize(process.env.DB, {
logging(log) {
console.log(highlight(log, { language: 'sql', ignoreIllegals: true }));
},
});
Detailed API documentation can be found here.
You can write your own theme in a JSON file and pass it with --theme
.
The key must be one of the highlight.js CSS class names or "default"
,
and the value must be one or an array of Chalk styles to be applied to that token.
{
"keyword": "blue",
"built_in": ["cyan", "dim"],
"string": "red",
"default": "gray"
}
The style for "default"
will be applied to any substrings not handled by highlight.js. The specifics depend on the language but this typically includes things like commas in parameter lists, semicolons at the end of lines, etc.
The theme is combined with the default theme. The default theme is still not colored a lot or optimized for many languages, PRs welcome!
All languages of highlight.js are supported.
The module is written in TypeScript and can be compiled with pnpm build
. Tests are written with vitest.
Improving language support is done by adding more colors to the tokens in the default theme and writing more tests.
FAQs
A fork of cli-highlight
The npm package cli-highlighter receives a total of 0 weekly downloads. As such, cli-highlighter popularity was classified as not popular.
We found that cli-highlighter demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Security News
MITRE's 2024 CWE Top 25 highlights critical software vulnerabilities like XSS, SQL Injection, and CSRF, reflecting shifts due to a refined ranking methodology.
Security News
In this segment of the Risky Business podcast, Feross Aboukhadijeh and Patrick Gray discuss the challenges of tracking malware discovered in open source softare.