Security News
New Python Packaging Proposal Aims to Solve Phantom Dependency Problem with SBOMs
PEP 770 proposes adding SBOM support to Python packages to improve transparency and catch hidden non-Python dependencies that security tools often miss.
A time tracker to make sure that you really spent the time you think you spent working, studying, etc.
A very simple tool to keep an eye on where your time is being spent, it's meant to track time accurately so that you don't wonder where all the time in the day goes at the end of it.
I found my self cheating my way out of responsibility by telling myself that I don't have a lot of time to get things done, while the whole available time is distributed across various activities that are of low if not no priority. Sometimes I tell myself "Oh the day is too short; I've spent the whole day working on this!", in fact the time spent actually working is so dimished.
It's really hard to achieve the "zen" mode focus: where you experience this very long period of concentration with no interuption, that is why I thought I really need a timer so I can't fool myself about how much work I've put in.
I haven't found an easy and fast tool to just stop a timer once your focus shifts to something else, so I made this very simple one that lets me do just that.
FAQs
A time tracker to make sure that you really spent the time you think you spent working, studying, etc.
We found that clockify demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
PEP 770 proposes adding SBOM support to Python packages to improve transparency and catch hidden non-Python dependencies that security tools often miss.
Security News
Socket CEO Feross Aboukhadijeh discusses open source security challenges, including zero-day attacks and supply chain risks, on the Cyber Security Council podcast.
Security News
Research
Socket researchers uncover how threat actors weaponize Out-of-Band Application Security Testing (OAST) techniques across the npm, PyPI, and RubyGems ecosystems to exfiltrate sensitive data.