
Research
Malicious npm Packages Impersonate Flashbots SDKs, Targeting Ethereum Wallet Credentials
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
eslint-config-matrix-org
Advanced tools
eslint-config-matrix-org is the ideal style adhered to by matrixorg projects.
It codifies https://github.com/matrix-org/matrix-react-sdk/blob/develop/code_style.md
This package contains five styles:
matrixorg
: The style for js projects.matrixorg/react
: The style for react based projects. Intended to be used in conjunction with matrixorg
or matrixorg/ts
.matrixorg/legacy
: The style adhered to by established projects making use pre es6, namely matrix-js-sdk
. It extends matrixorg
. DEPRECATED - DO NOT USEmatrixorg/react-legacy
: Styling for react projects using flowtype instead of ts. Intended to be phased out. It extends matrixorg/react
. DEPRECATED - DO NOT USEmatrixorg/ts
: The style for ts projects. It extends matrixorg
.To test it out
In this repo run:
yarn link
In the target repo run:
yarn link eslint-config-matrix-org
And add any of the following to your eslint:
Standard js style
{
extends: [
"matrix-org",
]
}
Standard ts style
{
extends: [
"matrix-org/ts",
]
}
Standard js with react
{
extends: [
"matrix-org",
"matrix-org/react",
]
}
Standard ts with react
{
extends: [
"matrix-org/ts",
"matrix-org/react",
]
}
FAQs
The js style ideals of the Matrix.org Foundation
The npm package eslint-config-matrix-org receives a total of 182 weekly downloads. As such, eslint-config-matrix-org popularity was classified as not popular.
We found that eslint-config-matrix-org demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
Security News
Ruby maintainers from Bundler and rbenv teams are building rv to bring Python uv's speed and unified tooling approach to Ruby development.
Security News
Following last week’s supply chain attack, Nx published findings on the GitHub Actions exploit and moved npm publishing to Trusted Publishers.