
Research
Security News
Malicious PyPI Package Exploits Deezer API for Coordinated Music Piracy
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
css-coverage
Advanced tools
[](https://greenkeeper.io/)
Generates coverage information of your CSS files and creates reports using the optional source maps.
css-coverage
?You can use the command line version to:
css-coverage
as part of a build (like in GruntJS)lcov
You can also generate LCOV Files for Coveralls or just HTML reports:
# Run CSS Coverage and generate a LCOV report (with verbose output)
css-coverage --css ./test/test.css --html ./test/test.html --lcov ./css.lcov
# Optionally Generate an HTML report
genhtml ./css.lcov --output-directory ./coverage
Usage: css-coverage [options]
Generate coverage info for a CSS file against an HTML file.
This supports loading sourcemaps by using the sourceMappingURL=FILENAME.map CSS comment
Options:
-h, --help output usage information
--html [path/to/file.html] path to a local HTML file
--css [path/to/file.css] path to a local CSS file
--lcov [path/to/output.lcov] the LCOV output file
--verbose verbose/debugging output
--ignore-source-map disable loading the sourcemap if one is found
--cover-declarations try to cover CSS declarations as well as selectors
(best-effort, difficult with sourcemaps)
FAQs
[](https://greenkeeper.io/)
We found that css-coverage demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.
Security News
Newly introduced telemetry in devenv 1.4 sparked a backlash over privacy concerns, leading to the removal of its AI-powered feature after strong community pushback.