
Research
/Security News
OpenAPI React Query Codegen Compromised in Mini Shai-Hulud npm Supply Chain Attack
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.
deflaky-cli
Advanced tools
Detect flaky tests by running your test suite multiple times. Works with Playwright, Selenium, Cypress, Jest, Pytest and any JUnit/JSON reporter.
Detect flaky tests by running your test suite multiple times.
DeFlaky wraps your existing test command, runs it N times, and identifies which tests are flaky, always-failing, or stable. It calculates a FlakeScore and optionally pushes results to the DeFlaky Dashboard.
Works with Playwright, Selenium, Cypress, Jest, Pytest, Mocha and any framework that outputs JUnit XML or JSON reports.
npm install -g deflaky
Or use without installing:
npx deflaky --help
# Run your test suite 5 times and detect flaky tests
deflaky -c "npx playwright test" -r 5
# Run 10 times with verbose output
deflaky -c "npx jest --ci" -r 10 --verbose
# Push results to DeFlaky dashboard
deflaky -c "npx playwright test" -r 5 --push --token YOUR_TOKEN
# Fail CI if FlakeScore drops below 90%
deflaky -c "npx pytest" -r 3 --fail-threshold 90
| Flag | Alias | Description | Default |
|---|---|---|---|
--command <cmd> | -c | Test command to run | required |
--runs <number> | -r | Number of iterations | 5 |
--push | Send results to DeFlaky dashboard | false | |
--token <token> | -t | API token (or DEFLAKY_TOKEN env) | |
--format <format> | Report format: junit, json, auto | auto | |
--fail-threshold <n> | Fail if FlakeScore is below this % | ||
--verbose | Show detailed output | false |
FlakeScore = (stable tests / total tests) x 100
MIT
FAQs
Detect flaky tests by running your test suite multiple times. Works with Playwright, Selenium, Cypress, Jest, Pytest and any JUnit/JSON reporter.
The npm package deflaky-cli receives a total of 5 weekly downloads. As such, deflaky-cli popularity was classified as not popular.
We found that deflaky-cli demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.

Security News
Socket joins more than 100 technology, cybersecurity, and financial organizations calling for a global surge in cyber defense.

Product
Enterprise security teams can now detect malware, credential theft, suspicious network activity, and risky updates across Microsoft Edge extensions.