
Research
PyPI Package Impersonates SymPy to Deliver Cryptomining Malware
Malicious PyPI package sympy-dev targets SymPy users, a Python symbolic math library with 85 million monthly downloads.
CLI to get a single file from Github repository.
Install globally with npm
$ npm install --global get-file
Specify the repo and filename:
get-file assemble/assemble README.md
List files
See a list of files for a repo before downloading one:
get-file --list assemble/assemble
Install with npm:
$ npm install get-file
Get an individual file and return a stream in the callback.
Params
repo {String}: Repository to get file from.filename {String}: file to get.cb {Function}: Callback function that takes err and res arguments.Example
var get = require('get-file');
get('jonschlinkert/get-file', 'package.json', function(err, res) {
if (err) return console.error(err);
var file = fs.createWriteStream('package.json');
res.pipe(file);
});
List the files in a given repository.
Params
repo {String}: Repository to get list of files.cb {Function}: Function that takes err and files argumentsExample
var get = require('get-file');
get.files('jonschlinkert/get-file', function(err, files) {
if (err) return console.error(err);
console.log(files);
});
.listFiles was renamed to .filesPull requests and stars are always welcome. For bugs and feature requests, please create an issue.
Running and reviewing unit tests is a great way to get familiarized with a library and its API. You can install dependencies and run tests with the following command:
$ npm install && npm test
Jon Schlinkert
Copyright © 2017, Jon Schlinkert. Released under the MIT License.
This file was generated by verb-generate-readme, v0.6.0, on May 31, 2017.
FAQs
CLI to get a single file from Github repository.
The npm package get-file receives a total of 3 weekly downloads. As such, get-file popularity was classified as not popular.
We found that get-file demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
Malicious PyPI package sympy-dev targets SymPy users, a Python symbolic math library with 85 million monthly downloads.

Security News
Node.js 25.4.0 makes require(esm) stable, formalizing CommonJS and ESM compatibility across supported Node versions.

Product
Create and share saved alert views with custom tabs on the org alerts page, making it easier for teams to return to consistent, named filter sets.