Security News
Research
Supply Chain Attack on Rspack npm Packages Injects Cryptojacking Malware
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
feedback-to-gitlab
Advanced tools
Express middleware to generate Gitlab issues from visual user feedback
Express middleware to create Gitlab issues from user feedback generated by ivoviz/feedback
npm install feedback-to-gitlab
var express = require('express')
var feedback = require('feedback-to-gitlab')
var app = express()
app.post('/feedback', feedback({
url: 'https://gitlab.url.com',
token: 'abcdefghij123456',
repository: 'some/repo'
}))
app.listen(80)
On the website where you want to gain user feedback you have to include ivoviz/feedback. Example configuration:
jQuery.feedback({
ajaxURL: 'http://url.com/feedback',
html2canvasURL: 'html2canvas.min.js'
})
A method do run feedback-to-gitlab
in a docker container is described in the wiki.
Base url of your Gitlab instance.
User token for Gitlab.
The path with namespace (e.g. 'some/repo'
) or ID (123
) of the Gitlab repository where the issues are created.
User credentials of the form { user: 'some', password: 'credentials' }
if your Gitlab instance requires HTTP basic access authentication.
Default: null
List of labels to tag the created issue.
Default: [ 'new' ]
By default the screenshots are uploaded to the same repository where the issue is created. Use this option to define a different repository by its namespace (e.g. 'some/other-repo'
) or ID (124
).
Default: repository
Name of the branch where the screenshots will be stored.
Default: 'master'
Directory where the screenshots will be stored in the repository.
Default: 'screenshots'
Limit the file size of the screenshot.
Default: '1mb'
FAQs
Express middleware to generate Gitlab issues from visual user feedback
The npm package feedback-to-gitlab receives a total of 1 weekly downloads. As such, feedback-to-gitlab popularity was classified as not popular.
We found that feedback-to-gitlab demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.
Security News
Sonar’s acquisition of Tidelift highlights a growing industry shift toward sustainable open source funding, addressing maintainer burnout and critical software dependencies.