
Research
PyPI Package Disguised as Instagram Growth Tool Harvests User Credentials
A deceptive PyPI package posing as an Instagram growth tool collects user credentials and sends them to third-party bot services.
devtools-config
Advanced tools
All default config values are in config/development.json
, to override these values you need to create a local config file.
firefoxProxy
Enables logging the Firefox protocol in the terminal running npm start
debug
Enables listening for remotely debuggable Chrome browsersport
web socket port specified when launching Chrome from the command linehost
host specified when launching Chrome from the command linedebug
Enables listening for remotely debuggable Node processesport
web socket port specified when connecting to nodehost
host specified when connecting to nodewebSocketConnection
favours Firefox WebSocket connection over the firefox-proxyhost
The hostname used for connecting to FirefoxwebSocketPort
Port used for establishing a WebSocket connection with Firefox when webSocketConnection
is true
or with a firefox-proxy when webSocketConnection
is false
tcpPort
Port used by the firefox-proxy when connecting to FirefoxgeckoDir
Local location of Firefox source code only needed by project maintainersserverPort
Listen Port used by the development serverexamplesPort
Listen Port used to serve exampleshotReloading
enables Hot Reloading of CSS and ReactbaseWorkerURL
Location for where the worker bundles existYou can create a configs/local.json
file to override development configs. This is great for enabling features locally or changing the theme. Copy the local-sample
to get started.
cp configs/local-sample.json configs/local-sample.json
The
local.json
will be ignored by git so any changes you make won't be published, only make changes to thedevelopment.json
file when related to features removed or added to the project.
FAQs
Devtools Local Configuration System
The npm package devtools-config receives a total of 9 weekly downloads. As such, devtools-config popularity was classified as not popular.
We found that devtools-config demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 11 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
A deceptive PyPI package posing as an Instagram growth tool collects user credentials and sends them to third-party bot services.
Product
Socket now supports pylock.toml, enabling secure, reproducible Python builds with advanced scanning and full alignment with PEP 751's new standard.
Security News
Research
Socket uncovered two npm packages that register hidden HTTP endpoints to delete all files on command.