Security News
Research
Supply Chain Attack on Rspack npm Packages Injects Cryptojacking Malware
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
ensure-string
Advanced tools
If required, convert the input value to a string.
The input value may be a Buffer, ArrayBuffer, Int8Array.
By default the conversion will consider that the text encoding is utf-8
.
If the file contains an UTF-16 byte-order mark (BOM), this will be detected and default to utf-16le
or utf-16be
accordingly.
If the input value is a text, no change is done. The method returns the value without further processing.
$ npm i ensure-string
We have a text.txt
file containing the string ABC
.
import { ensureString } from '..';
import { readFileSync } from 'fs';
import { join } from 'path';
const blob = readFileSync(join(__dirname, 'test.txt')); // read the file as an ArrayBuffer
const text = ensureString(blob);
console.log(text); // the text is a string containing ÀBC`
FAQs
Ensure that we receive a text even if an ArrayBuffer is sent
The npm package ensure-string receives a total of 1,694 weekly downloads. As such, ensure-string popularity was classified as popular.
We found that ensure-string demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.
Security News
Sonar’s acquisition of Tidelift highlights a growing industry shift toward sustainable open source funding, addressing maintainer burnout and critical software dependencies.