data:image/s3,"s3://crabby-images/7e228/7e2287ba60e21dee87416ea9983ec241b5307ec2" alt="vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance"
Security News
vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Detox is an end-to-end testing and automation framework for mobile applications. It is designed to test mobile apps on both iOS and Android platforms, ensuring that the app works as expected from the user's perspective. Detox is known for its ability to handle asynchronous operations and its integration with popular mobile development frameworks like React Native.
End-to-End Testing
This code demonstrates a basic end-to-end test using Detox. It launches the app, checks for the visibility of a welcome screen, taps a button, and verifies that a 'Hello' screen is displayed.
const { device, expect, element, by } = require('detox');
beforeAll(async () => {
await device.launchApp();
});
describe('Example', () => {
it('should have welcome screen', async () => {
await expect(element(by.id('welcome'))).toBeVisible();
});
it('should show hello screen after tap', async () => {
await element(by.id('hello_button')).tap();
await expect(element(by.text('Hello!!!'))).toBeVisible();
});
});
Device Interaction
This code sample shows how to interact with the device using Detox. It includes actions like rotating the device to landscape mode and shaking the device.
const { device } = require('detox');
beforeAll(async () => {
await device.launchApp();
});
describe('Device Interaction', () => {
it('should rotate the device to landscape', async () => {
await device.setOrientation('landscape');
});
it('should shake the device', async () => {
await device.shake();
});
});
Synchronization
This code demonstrates Detox's synchronization capabilities. It waits for a specific element to become visible within a given timeout period.
const { device, element, by } = require('detox');
beforeAll(async () => {
await device.launchApp();
});
describe('Synchronization', () => {
it('should wait for element to be visible', async () => {
await waitFor(element(by.id('uniqueId'))).toBeVisible().withTimeout(2000);
});
});
Appium is an open-source tool for automating native, mobile web, and hybrid applications on iOS and Android platforms. Unlike Detox, which is specifically designed for React Native and mobile apps, Appium supports a broader range of applications and programming languages.
Cypress is a JavaScript end-to-end testing framework primarily designed for web applications. While it does not natively support mobile app testing like Detox, it is known for its ease of use and powerful features for web testing.
WebdriverIO is a popular testing framework that allows you to run tests based on the WebDriver protocol and Appium. It supports both web and mobile applications, making it more versatile compared to Detox, which is focused on mobile apps.
Graybox E2E Tests and Automation Library for Mobile
High velocity native mobile development requires us to adopt continuous integration workflows, which means our reliance on manual QA has to drop significantly. The most difficult part of automated testing on mobile is the tip of the testing pyramid - E2E. The core problem with E2E tests is flakiness - tests are usually not deterministic. We believe the only way to tackle flakiness head on is by moving from blackbox testing to graybox testing and that's where detox comes into play.
Please note that this library is still pre version 1.0.0 and under active development. The NPM version is higher because the name "detox" was transferred to us from a previous inactive package.
This is a step-by-step guide to help you add detox to your project.
If you used previous detox version, follow the migration guide.
Install the latest version of brew
.
If you haven't already, install Node.js
brew update && brew install node
You will also need fbsimctl
installed:
brew tap facebook/fb && brew install fbsimctl --HEAD
Detox CLI
detox-cli
package should be installed globally, enabling usage of detox command line tools outside of your npm scripts.
npm install -g detox-cli
If you do not have a package.json
file in the root folder of your project, create one by running
npm init
Follow the on screen instructions.
By default, Xcode uses a randomized hidden path for outputting project build artifacts, called DerivedData. For ease of use (and better support in CI environments), it is recommended to change the project build path to a more convenient path.
File
► Project Settings...
. Click on Advanced...
, select Custom
and from the drop-down menu, select Project-relative Location
.DerivedData
folder next to your xcodeproj
project.Install detox:
npm install detox --save-dev
Install mocha:
npm install mocha --save-dev
Add detox to your package.json
:
"detox": {
"configurations": {
"ios.sim.release": {
"binaryPath": "ios/build/Build/Products/Release-iphonesimulator/example.app",
"build": "xcodebuild -project ios/example.xcodeproj -scheme example -configuration Release -sdk iphonesimulator -derivedDataPath ios/build",
"type": "simulator",
"name": "iPhone 7"
}
}
}
For full configuration options see the options section below.
e2e
folder in your project root.mocha.opts
file with this content.init.js
file with this content.myFirstTest.spec.js
with content similar to this.By using the detox
command line tool, you can build and test your project easily.
Build your app:
detox build
Test your app:
detox test
That's it!
configurations
holds all the device configurations, if there is only one configuration in configurations
detox build
and detox test
will default to it, to choose a specific configuration use --configuration
param
Configuration Params | Details |
---|---|
binaryPath | relative path to the ipa/app due to be tested (make sure you build the app in a project relative path) |
type | device type, currently only simulator (iOS) is supported |
name | device name, aligns to the device list avaliable through fbsimctl list for example, this is one line of the output of fbsimctl list : `A3C93900-6D17-4830-8FBE-E102E4BBCBB9 |
build | [optional] build command (either xcodebuild , react-native run-ios , etc...), will be later available through detox CLI tool. |
Detox can either initialize a server using a generated configuration, or can be overriden with a manual configuration:
"detox": {
...
"session": {
"server": "ws://localhost:8099",
"sessionId": "YourProjectSessionId"
}
}
Applies when using detox-cli
by running detox test
command, default is e2e
.
"detox": {
...
"specs": "path/to/tests"
}
In your detox config (in package.json) paste your build command into the configuration's build
field.
The build command will be triggered when running
You can choose to build your project in any of these ways...
If there's only one configuration, you can simply use:
detox build
To choose a specific configuration:
detox build --configuration yourConfiguration
Building with xcodebuild:
xcodebuild -project ios/YourProject.xcodeproj -scheme YourProject -sdk iphonesimulator -derivedDataPath ios/build
Building using React Native, this is the least suggested way of running your build, since it also starts a random simulator and installs the app on it.
react-native run-ios
Note: remember to update the
app
path in yourpackage.json
.
If there's only one configuration, you can simply use:
detox test
For multiple configurations, choose your configuration by passing --configuration
param:
detox test --configuration yourConfiguration
Open the React Native demo project and follow the instructions
Not using React Native? you now have a pure native demo project too
Check the API Reference or see detox's own E2E test suite to learn the test API by example.
See the Flakiness handbook
If you're interested in working on detox core and contributing to detox itself, take a look here.
demo-react-native/e2e/example.spec.js
FAQs
E2E tests and automation for mobile
The npm package detox receives a total of 282,526 weekly downloads. As such, detox popularity was classified as popular.
We found that detox demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.