
Security News
Axios Maintainer Confirms Social Engineering Attack Behind npm Compromise
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.
find-node-modules-import
Advanced tools
Find specific node modules import statement in your source code
Find specific node modules import statement in your source code.
node:fs or assert📝 This tool only support import syntax. require syntax is not supported.
Install with npm:
npm install find-node-modules-import --global
Requirement:
Usage
$ find-node-modules-import [file|glob*]
Options
--module [String] filter the result by module name
--builtinModules [Boolean] filter the result by Node.js builtin modules. Default: false
--verbose [Boolean] show warning/error output. Default: false
Examples
# show all imports
$ find-node-modules-import "src/**/*.{js, ts}"
# show Node.js builtin modules
$ find-node-modules-import "src/**/*.{js, ts}" --builtinModules
# show specific module
$ find-node-modules-import "src/**/*.{js, ts}" --module "lodash"
See Releases page.
Install devDependencies and Run npm test:
npm test
Pull requests and stars are always welcome.
For bugs and feature requests, please create an issue.
git checkout -b my-new-featuregit commit -am 'Add some feature'git push origin my-new-featureMIT © azu
FAQs
Find specific node modules import statement in your source code
The npm package find-node-modules-import receives a total of 1 weekly downloads. As such, find-node-modules-import popularity was classified as not popular.
We found that find-node-modules-import demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.

Security News
Node.js has paused its bug bounty program after funding ended, removing payouts for vulnerability reports but keeping its security process unchanged.

Security News
The Axios compromise shows how time-dependent dependency resolution makes exposure harder to detect and contain.