
Security News
/Research
Wallet-Draining npm Package Impersonates Nodemailer to Hijack Crypto Transactions
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
create-thulite
Advanced tools
Official CLI for scaffolding a new Thulite project.
v20.19.0
or highernpm create thulite@latest
yarn create thulite
pnpm create thulite
bun create thulite
Then follow the prompts!
You can also directly specify the project name and the template you want to use via additional command line options. For example, to scaffold a Thulite + Doks project, run:
npm create thulite@latest my-project -- --template doks
yarn create thulite my-project --template doks
pnpm create thulite my-project --template doks
bun create thulite my-project --template doks
You can use .
for the project name to scaffold in the current directory.
Templates with recommended integrations (SEO and Images):
doks
bolt
tailwindcss-rec
bootstrap-rec
basic-rec
Templates without recommended integrations:
tailwindcss
bootstrap
basic
You can view all available options and templates using the help command:
npx create-thulite@latest --help
yarn create thulite --help
pnpm create thulite --help
bun create thulite --help
If you encounter EPERM: operation not permitted
errors when using Yarn on Windows, try one of these solutions:
Run as Administrator: Right-click PowerShell and select "Run as Administrator"
Use npm instead:
npm create thulite@latest my-project -- --template doks
Fix .yarnrc permissions:
$yarnrcPath = "$env:USERPROFILE\.yarnrc"
if (Test-Path $yarnrcPath) {
icacls $yarnrcPath /grant "$env:USERNAME:(F)"
}
Delete problematic .yarnrc (if safe to do so):
Remove-Item "$env:USERPROFILE\.yarnrc" -Force
This npm package is based on:
FAQs
Official CLI for scaffolding a new Thulite project.
The npm package create-thulite receives a total of 36 weekly downloads. As such, create-thulite popularity was classified as not popular.
We found that create-thulite demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
/Research
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
Security News
This episode explores the hard problem of reachability analysis, from static analysis limits to handling dynamic languages and massive dependency trees.
Security News
/Research
Malicious Nx npm versions stole secrets and wallet info using AI CLI tools; Socket’s AI scanner detected the supply chain attack and flagged the malware.