
Security News
NIST Officially Stops Enriching Most CVEs as Vulnerability Volume Skyrockets
NIST will stop enriching most CVEs under a new risk-based model, narrowing the NVD's scope as vulnerability submissions continue to surge.
composableapp
Advanced tools
Plasmic CLI for syncing Plasmic designs down into your local repo as generated React code.
Plasmic is the visual builder for React. Learn more at https://plasmic.app.
npm install -g @plasmicapp/cli
See https://docs.plasmic.app/learn/codegen-guide/ for the full docs to get started with Plasmic codegen.
plasmic init creates the initial plasmic.json file, pointing to your local dev host.
plasmic sync --projects ... allows you to sync all components in the specified projects
down as code files to your current folder. Once you've run plasmic init, you can run
plasmic sync from any subfolder of the folder with the plasmic.json file.
FAQs
composable cli for syncing local code with Composable designs
The npm package composableapp receives a total of 2 weekly downloads. As such, composableapp popularity was classified as not popular.
We found that composableapp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
NIST will stop enriching most CVEs under a new risk-based model, narrowing the NVD's scope as vulnerability submissions continue to surge.

Company News
/Security News
Socket is an initial recipient of OpenAI's Cybersecurity Grant Program, which commits $10M in API credits to defenders securing open source software.

Security News
Socket CEO Feross Aboukhadijeh joins 10 Minutes or Less, a podcast by Ali Rohde, to discuss the recent surge in open source supply chain attacks.