Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
create-orchy-mfe
Advanced tools
Would you like to scaffold a new Micro Frontend, without leaving the CLI?
The tool create-orchy-mfe
is what you need!
There are multiple ways to run it, e.g.:
npm install -g create-orchy-mfe
npx
, with the commandnpx create-orchy-mfe
npm
, with the commandnpm create orchy-mfe
The following video is an example of what you can get with create-orchy-mfe
installed and running.
https://user-images.githubusercontent.com/6383527/213863764-009423ed-cadd-45d8-981a-f2846ff337c8.mp4
If you prefer, create-orchy-mfe
can also be invoked in a non-interactive way, using the following CLI arguments:
Options:
-d, --directory The directory where your micro-frontend will be located
-h, --help Output usage information
-n, --name The name of your new micro-frontend
-t, --template The template that will be used generate your micro-frontend
-T, --ts Use the TypeScript variant of the template
-v, --version Output the version number
If you get an error about GitHub's rate limit, you should define the GITHUB_AUTH_TOKEN
environment variable, which will be used to access the GitHub APIs' using the octokit
client.
FAQs
Orchy micro frontends template scaffolder
We found that create-orchy-mfe demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.