
Security News
vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
$ git clone git://github.com/molforp/geon
$ cd geon
$ npm install
geon fetch [countries...]
– download files from geonames.org
param countries
: optional (list of country codes: RU UA US
, if not exists - from config.js
)
options: --alt
- download alternateNames.zip
, --ci
- download countryInfo.txt
, --c1
- download cities1000.zip
, --c5
- download cities5000.zip
, --c15
- download cities15000.zip
geon alter [langs...]
– filter alternateNames by language
param langs
: optional (list of languages: ru en
, if not exists - from config.js
)
geon build [countries...]
– build cities and regions for full countries
param countries
: optional (list of country codes: RU UA US
, if not exists - from config.js
, or all
- build all countries)
options: --co
- build countries from countriesInfo.txt
, --ci
- build cities for countries from config
geon cities [countries...]
– build cities from the file cities1000.txt or cities5000.txt or cities15000.txt
param countries
: optional (list of country codes: RU UA US
, if not exists - build for all countries)
geon regions [countries...]
– build regions from the file cities1000.txt or cities5000.txt or cities15000.txt
param countries
: optional (list of country codes: RU UA US
, if not exists - build for all countries)
geon fix [countries...]
– add some fixes for data
param countries
: optional (list of country codes: RU UA US
, if not exists - add fixes for countries from directory fixes/countries
)
geon -h
– show help for geon
All raw data stores in raw_data
folder and destination data stores in data
folder. You can change it in config.js
.
geon -h
for more info.
geon fetch --alt --ci --c1
- download alternateNames.zip
, countriesInfo.txt
, cities1000.zip
geon alter
- filter alternate namesgeon cities
and then geon regions
, or just geon build
- build cities and regions with translations from alternateNames
geon fix
- add some fixesFAQs
Geonames data collector
The npm package geon receives a total of 1 weekly downloads. As such, geon popularity was classified as not popular.
We found that geon demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.