
Research
Security News
Malicious PyPI Package Exploits Deezer API for Coordinated Music Piracy
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
ember-chromium
Advanced tools
Ember chromium is an easy way to download chromium in your project and run your unit/integration tests through it. It will also run headless by default on CI servers.
In your package.json
, add a postinstall hook to run the download chromium script:
"scripts": {
...
"postinstall": "npm run install-chromium",
"install-chromium": "node node_modules/ember-chromium/download-chrome.js"
}
then simply run npm install
on your project.
You can run just the default behavior by doing the following in testem.js:
module.exports = require('ember-chromium').getTestemConfig();
That's it!
You can further customize the chromium as follows:
const chromium = require('ember-chromium');
const myCustomReporter = require('some-test-reporter');
// any chromium flags you want
const chromiumArgs = [
'--disable-gpu',
'--no-sandbox',
'--disable-gesture-requirement-for-media-playback',
'--allow-file-access',
'--use-fake-device-for-media-stream',
'--use-fake-ui-for-media-stream'
];
const config = chromium.getTestemConfig(chromiumArgs);
config.reporter = myCustomReporter;
module.export = config;
Once you have the default config, you can manipulate as fits your needs.
FAQs
One place to hold all the logic to download and run ember tests in chromium
The npm package ember-chromium receives a total of 21 weekly downloads. As such, ember-chromium popularity was classified as not popular.
We found that ember-chromium demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.
Security News
Newly introduced telemetry in devenv 1.4 sparked a backlash over privacy concerns, leading to the removal of its AI-powered feature after strong community pushback.