
Security News
vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
#Feather 0.0.1
A light-weight logger
It uses Unix log levels [Emergency, Alert, Critical, Error, Warn, Notice, Info, Debug]
, and similarly to logging
facilities like [syslog] (http://www.syslog.org/), Feather allows you to define the highest level to log up too.
This avoids printing out debug logs in production, for example. Or if you want to discard both Info and Debug level logs
you can. This is what loger can do for you.
##Get Feather (if you have node.js and npm installed then skip to the [Main] step below)
Feather runs on node.js. In order to run feather ant the tests first install node. The follwing instructions install node.js on Ubuntu Linux, other Unix distros may vary. For OSx, Windows or other please find other instructions to follow.
###First install dependencies
`$ sudo apt-get install g++ libssl-dev apache2-utils`
###If git is not install then do this now
`$ sudo apt-get install git-core`
###Now node.js can be installed using git
`$ git clone git://github.com/ry/node.git`
###Now you are ready to configure and compile node.js
`$ cd node
$ ./configure
$ make
$ sudo make install`
###You will also need to install any depencies.
Defined in package.json are modules on which Feather depends on to run. The easiest way to do this is through npm, which can be installed following these steps:
If you do not have curl then get that first:
$ sudo apt-get install curl
Now you are ready to fetch the npm code
`$ curl http://npmjs.org/install.sh | sh`
May be worth taking a look at the [README] (http://npmjs.org/doc/README.html) file.
#Main step below
Now you are ready to fetch feather Providing all the above has gone well, you will have all the facilities to do the following to get and try out feather
`$ git@github.com:holidayextras/feather.git // fetch the code using git
$ cd feather // move to Feather dir
$ npm install // install depencies
Functions provided by feather are:
`var logger = require('feather');`
`logger.emergency('emergency message');
logger.alert('alert message);
logger.critical('critical error message');
logger.error('error message');
logger.warn('warn message');
logger.notice('notice message');
logger.info('info message');
logger.debug('data data');`
#Run tests
Now you can run the tests. Chenge the rootLogger node in config/loggerProperties.js configuration and run the tests again. Have a play and feed back to me at viktor.trako@holidayextras.com.
$ node test/testLogger.js // run tests`
#Set up
Feather looks for a featherProperties.js in config directory in your app directory. If it cannot find one then it will use its default configuration file in feather/config/featherProperties.
Taking a look inside feather/config/featherProperties:
module.exports = { "timestampFormat" : "dddd, MMMM Do YYYY, h:mm:ss a", "level" : "Info" }
This is a good example of the properties set. Whatever value the rootLevel node is set to then nothing below that
value will be loged. In the instance above where [info]
is set, all log messages will be loged apart from [debug]
messages. If [warn]
is assigned to rootLevel then [notice]
, [info]
, and [debug]
messages throughout your
codebase will be ignored.
FAQs
A light-weight logger
The npm package feather receives a total of 143 weekly downloads. As such, feather popularity was classified as not popular.
We found that feather demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.