Security News
New Python Packaging Proposal Aims to Solve Phantom Dependency Problem with SBOMs
PEP 770 proposes adding SBOM support to Python packages to improve transparency and catch hidden non-Python dependencies that security tools often miss.
esm-directory-import
Advanced tools
Import the files in a directory recursively using dynamic import(import.meta.url)
Using the
import.meta.url
file URL to recursively and dynamicallyimport()
each of the files inside the directory of the specified URL. Thedefault
export for each file (module) is collected into a dictionary that sets the export into a directory delimited structure.
- directory1
- index.js (file that calls `importDir(import.meta.url)`
- file1.js
- directory2
- file2.mjs
- file3.cjs
{
file1: (default export of file1.js),
directory2: {
file2: (default export of file2.mjs),
file3: (default export of file3.cjs),
}
}
import importDir from 'import-dir';
export const defaults = await importDir(import.meta.url);
// or
export const defaults = await importDir(import.meta.url, { exclude: ['directory2/file2.mjs'] });
The default export function of esm-directory-import
accepts 2 arguments, the first is a file URL, typically the value of import.meta.url
from the ESM that invokes the function. The second argument is a dictionary of options outlined here:
exclude: string[] = []
An array of string file paths relative to the initial file URL that
should be excluded from the returned object.glob: (pattern: string, options: GlobOptions) => Promise<string[]> = glob
A function that accepts a glob pattern as the first argument and an object that specifies { cwd: dirname(fileUrlToPath(import.meta.url)) }
.extensions: string[] = ['.mjs', '.cjs', '.js']
An array of string file extensions that will
be used in the glob pattern used for determining the files that should be imported.template: (exts: string[]) => string = (exts) => '**/*{${exts.join(',')}}'
A function that takes a list of file extensions that should be looked for and returns a glob file matching pattern.collector: (mod: Module) => any = (mod) => mod.default
A function that accepts the result of await import(file)
as an argument and returns the value that should be stored as the value of the file in the object structure.FAQs
Import the files in a directory recursively using dynamic import(import.meta.url)
We found that esm-directory-import demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
PEP 770 proposes adding SBOM support to Python packages to improve transparency and catch hidden non-Python dependencies that security tools often miss.
Security News
Socket CEO Feross Aboukhadijeh discusses open source security challenges, including zero-day attacks and supply chain risks, on the Cyber Security Council podcast.
Security News
Research
Socket researchers uncover how threat actors weaponize Out-of-Band Application Security Testing (OAST) techniques across the npm, PyPI, and RubyGems ecosystems to exfiltrate sensitive data.