
Security News
The Next Open Source Security Race: Triage at Machine Speed
Claude Opus 4.6 has uncovered more than 500 open source vulnerabilities, raising new considerations for disclosure, triage, and patching at scale.
Generate a Code of Conduct for your project - Provided by Contributor Covenant
Generate a Code of Conduct for your project - Provided by Contributor Covenant
tl;dr Having a Code of Conduct is helpful in fostering and enforcing a friendly inclusive community.
Open source projects suffer from a startling lack of diversity, with dramatically low representation by women, people of color, and other marginalized populations. Part of this problem lies with the very structure of some projects: the use of insensitive language, thoughtless use of pronouns, assumptions of gender, and even sexualized or culturally insensitive names.
An easy way to begin addressing this problem is to be overt in our openness, welcoming all people to contribute, and pledging in return to value them as human beings and to foster an atmosphere of kindness, cooperation, and understanding.
A Code of Conduct can be one way to express these values.
Do not simply add the Contributor Covenant to your project and assume that any problems with civility, harassment, or discrimination will be solved.
npm install --global conduct
$ conduct --help
Usage
$ conduct
Example
$ conduct --language=de
Options
--uppercase, -c Use uppercase characters (e.g. CODE-OF-CONDUCT.md)
--underscore, -u Use underscores instead of dashes (e.g. code_of_conduct.md)
--language, -l The language of the Code of Conduct [Default: en]
--directory, -d The output directory [Default: .]
You can also use this to update an existing Code of Conduct.
If a readme file exists in the directory, the case for the generated Code of Conduct file will match.
(e.g. readme.md produces code-of-conduct.md, README.md produces CODE-OF-CONDUCT.md).
When generating a new Code of Conduct it will try to infer your email to use as contact email. If it can't, it will prompt for it. The email is persisted and only asked once. You can force update the email with conduct --email=your@email.com. When updating an existing Code of Conduct, it will use the existing contact email unless you pass the --email flag.
The language of the Code of Conduct can be set with conduct --language=en. The language is persisted and can be updated by passing the --language flag at any time. See the vendor folder for all available languages. The default is 'en' for English.
Contributor Code of Conduct. By participating in this project you agree to abide by its terms.
FAQs
Generate a Code of Conduct for your project - Provided by Contributor Covenant
We found that conduct demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Claude Opus 4.6 has uncovered more than 500 open source vulnerabilities, raising new considerations for disclosure, triage, and patching at scale.

Research
/Security News
Malicious dYdX client packages were published to npm and PyPI after a maintainer compromise, enabling wallet credential theft and remote code execution.

Security News
gem.coop is testing registry-level dependency cooldowns to limit exposure during the brief window when malicious gems are most likely to spread.