Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
dev-env-installer
Advanced tools
[![Build Status](https://travis-ci.org/mulesoft-labs/dev-env-installer.svg?branch=master)](https://travis-ci.org/mulesoft-labs/dev-env-installer)
For listed NPM modules having GitHub URL and branch:
workspace.json
to the root of the cloned module repository:{
"npm-module-name-1" : {
"build" : "npm run build",
"test" : "gulp test",
"gitUrl" : "https://github.com/org/npm-module-1.git",
"gitBranch" : "devBranch",
"installTypings" : true
},
"npm-module-name-2" : {
"build" : "gulp build",
"gitUrl" : "https://github.com/org/npm-module-2.git"
},
}
The only required field for module is gitUrl
.
With current directory set to a root of the module repository:
dev-env-installer install
:
workspace.json
, does not clone repository if already exist in workspace root. If no gitBranch
is specified, clones master
branch. Uses --single-branch
.npm install
npm link
<npm-dependency-name>
of each repository, which is listed in workspace.json
removes the one installed by NPM and executes npm link <npm-dependency-name>
installTypings: true
executes typings install
dev-env-installer pullall
- for each repository in workspace.json
in reverse order executes git pull
dev-env-installer buildall
- for each repository in workspace.json
in reverse order executes the command listed as build
in workspace.json
. Skips if no command specified.
dev-env-installer testall
- for each repository in workspace.json
in reverse order executes the command listed as test
in workspace.json
. Skips if no command specified.
Optional CLI parameters:
--workspace
sets up workspace root. If not specified, workspace root is either a parent dir if executed for a module or current dir if no module is found.--descriptor
sets up workspace.json
path. If not specified, is searched in the current dir, module dir or workspace root.FAQs
[![Build Status](https://travis-ci.org/mulesoft-labs/dev-env-installer.svg?branch=master)](https://travis-ci.org/mulesoft-labs/dev-env-installer)
The npm package dev-env-installer receives a total of 26 weekly downloads. As such, dev-env-installer popularity was classified as not popular.
We found that dev-env-installer demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.