Security News
New Python Packaging Proposal Aims to Solve Phantom Dependency Problem with SBOMs
PEP 770 proposes adding SBOM support to Python packages to improve transparency and catch hidden non-Python dependencies that security tools often miss.
eslint-compat-utils
Advanced tools
Provides an API for ESLint custom rules that is compatible with the latest ESLint even when using older ESLint.
This package is still in the experimental stage.
Provides an API for ESLint custom rules that is compatible with the latest ESLint even when using older ESLint.
npm install --save-dev eslint-compat-utils
const { getSourceCode } = require("eslint-compat-utils");
module.exports = {
meta: { /* ... */ },
create(context) {
const sourceCode = getSourceCode(context)
return {
"Program"(node) {
const scope = sourceCode.getScope(node);
},
};
},
}
getSourceCode(context)
Returns an extended instance of context.sourceCode
or the result of context.getSourceCode()
. Extended instances can use new APIs such as getScope(node)
even with old ESLint.
getCwd(context)
Gets the value of context.cwd
, but for older ESLint it returns the result of context.getCwd()
.
Versions older than v6.6.0 return a value from the result of process.cwd()
.
getFilename(context)
Gets the value of context.filename
, but for older ESLint it returns the result of context.getFilename()
.
getPhysicalFilename(context)
Gets the value of context.physicalFilename
, but for older ESLint it returns the result of context.getPhysicalFilename()
.
Versions older than v7.28.0 return a value guessed from the result of context.getFilename()
, but it may be incorrect.
FAQs
Provides an API for ESLint custom rules that is compatible with the latest ESLint even when using older ESLint.
The npm package eslint-compat-utils receives a total of 1,767,995 weekly downloads. As such, eslint-compat-utils popularity was classified as popular.
We found that eslint-compat-utils demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
PEP 770 proposes adding SBOM support to Python packages to improve transparency and catch hidden non-Python dependencies that security tools often miss.
Security News
Socket CEO Feross Aboukhadijeh discusses open source security challenges, including zero-day attacks and supply chain risks, on the Cyber Security Council podcast.
Security News
Research
Socket researchers uncover how threat actors weaponize Out-of-Band Application Security Testing (OAST) techniques across the npm, PyPI, and RubyGems ecosystems to exfiltrate sensitive data.