Security News
pnpm 10.0.0 Blocks Lifecycle Scripts by Default
pnpm 10 blocks lifecycle scripts by default to improve security, addressing supply chain attack risks but sparking debate over compatibility and workflow changes.
devtools-config
Advanced tools
All default config values are in config/development.json
, to override these values you need to create a local config file.
firefoxProxy
Enables logging the Firefox protocol in the terminal running npm start
debug
Enables listening for remotely debuggable Chrome browsersport
web socket port specified when launching Chrome from the command linehost
host specified when launching Chrome from the command linedebug
Enables listening for remotely debuggable Node processesport
web socket port specified when connecting to nodehost
host specified when connecting to nodewebSocketConnection
favours Firefox WebSocket connection over the firefox-proxyhost
The hostname used for connecting to FirefoxwebSocketPort
Port used for establishing a WebSocket connection with Firefox when webSocketConnection
is true
or with a firefox-proxy when webSocketConnection
is false
tcpPort
Port used by the firefox-proxy when connecting to FirefoxgeckoDir
Local location of Firefox source code only needed by project maintainersserverPort
Listen Port used by the development serverexamplesPort
Listen Port used to serve exampleshotReloading
enables Hot Reloading of CSS and ReactbaseWorkerURL
Location for where the worker bundles existYou can create a configs/local.json
file to override development configs. This is great for enabling features locally or changing the theme. Copy the local-sample
to get started.
cp configs/local-sample.json configs/local-sample.json
The
local.json
will be ignored by git so any changes you make won't be published, only make changes to thedevelopment.json
file when related to features removed or added to the project.
FAQs
Devtools Local Configuration System
We found that devtools-config demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 11 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
pnpm 10 blocks lifecycle scripts by default to improve security, addressing supply chain attack risks but sparking debate over compatibility and workflow changes.
Product
Socket now supports uv.lock files to ensure consistent, secure dependency resolution for Python projects and enhance supply chain security.
Research
Security News
Socket researchers have discovered multiple malicious npm packages targeting Solana private keys, abusing Gmail to exfiltrate the data and drain Solana wallets.