
Research
Security News
Lazarus Strikes npm Again with New Wave of Malicious Packages
The Socket Research Team has discovered six new malicious npm packages linked to North Korea’s Lazarus Group, designed to steal credentials and deploy backdoors.
eslint-config-biome
Advanced tools
Disables all the ESLint rules that have a recommended and equivalent Biome rule
Disables all the ESLint rules that have an equivalent and recommended Biome rule, so you can use both for better performance.
Early stage lib, will be improved soon with further improvements such as considering non-recommended Biome rules.
npm install -D eslint-plugin-biome
.eslintrc.*
: Add "biome"
as the last item in the extends
field.{
"extends": [
"other-configs",
"biome"
]
}
eslint.config.js
: Import eslint-config-biome
and have it as the last item in the configuration arrayimport eslintConfigBiome from "eslint-config-biome";
export default [
otherConfigs,
eslintConfigBiome,
];
overrides
:overrides: [{
files: ["*.ts", "*.js", "*.tsx", "*.jsx"],
extends: ["biome"],
}],
Being this the last item in the array, this will make sure that other existing overrides before it will have this patch applied. This also overrides any rules that may lie in the root of your .eslintrc under rules
.
You should use it together with eslint-config-prettier so formatting rules are also disabled as Biome has almost a 100% compatibility with prettier! You certainly no longer require prettier if you are using Biome.
In VSCode, to apply Biome and ESLint on save, you should have these in your settings.json:
"editor.codeActionsOnSave": {
"source.fixAll.eslint": "explicit",
"source.organizeImports.biome": "explicit",
"quickfix.biome": "explicit"
},
"editor.defaultFormatter": "biomejs.biome"
This package had its origin in this discussion.
Thanks DaniGuardiola for your initial code!
FAQs
Disables ESLint rules that have a recommended and equivalent Biome rule
The npm package eslint-config-biome receives a total of 19,672 weekly downloads. As such, eslint-config-biome popularity was classified as popular.
We found that eslint-config-biome demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
The Socket Research Team has discovered six new malicious npm packages linked to North Korea’s Lazarus Group, designed to steal credentials and deploy backdoors.
Security News
Socket CEO Feross Aboukhadijeh discusses the open web, open source security, and how Socket tackles software supply chain attacks on The Pair Program podcast.
Security News
Opengrep continues building momentum with the alpha release of its Playground tool, demonstrating the project's rapid evolution just two months after its initial launch.