Security News
Supply Chain Attack Detected in Solana's web3.js Library
A supply chain attack has been detected in versions 1.95.6 and 1.95.7 of the popular @solana/web3.js library.
git-source
Advanced tools
Parse and stringify git urls in a friendly way.
# Using npm
npm install --save git-source
# Using yarn
yarn add git-source
const gitSource = require("git-source");
console.log(gitSource("owner/repo"));
// { protocols: [ 'https' ],
// protocol: 'https',
// port: null,
// resource: 'github.com',
// user: '',
// pathname: '/owner/repo',
// hash: '',
// search: '',
// href: 'https://github.com/owner/repo',
// token: '',
// toString: [Function],
// source: 'github.com',
// name: 'repo',
// owner: 'owner',
// organization: '',
// full_name: 'owner/repo' }
console.log(gitSource("owner/repo").toString());
// https://github.com/owner/repo
console.log(gitSource("gist:id").toString());
// https://gist.github.com/id
console.log(gitSource("gist:owner/id").toString());
// https://gist.github.com/owner/id
console.log(gitSource("bitbucket:owner/repo").toString("ssh"));
// git@bitbucket.org:owner/repo.git
console.log(gitSource("git@github.com:IonicaBizau/git-url-parse.git"));
// { protocols: [],
// protocol: 'ssh',
// port: null,
// resource: 'github.com',
// user: 'git',
// pathname: '/IonicaBizau/git-url-parse.git',
// hash: '',
// search: '',
// href: 'git@github.com:IonicaBizau/git-url-parse.git',
// token: '',
// toString: [Function],
// source: 'github.com',
// name: 'git-url-parse',
// owner: 'IonicaBizau',
// organization: 'git',
// full_name: 'IonicaBizau/git-url-parse' }
There are few ways to get help:
Have an idea? Found a bug? See how to contribute.
I open-source almost everything I can, and I try to reply to everyone needing help using these projects. Obviously, this takes time. You can integrate and use these projects in your applications for free! You can even change the source code and redistribute (even resell it).
However, if you get some profit from this or just want to encourage me to continue creating stuff, there are few ways you can do it:
Starring and sharing the projects you like :rocket:
—I love books! I will remember you after years if you buy me one. :grin: :book:
—You can make one-time donations via PayPal. I'll probably buy a coffee tea. :tea:
—Set up a recurring monthly donation and you will get interesting news about what I'm doing (things that I don't share with everyone).
Bitcoin—You can send me bitcoins at this address (or scanning the code below): 1P9BRsmazNQcuyTxEqveUsnf5CERdq35V6
Thanks! :heart:
If you are using this library in one of your projects, add it in this list. :sparkles:
package.json
git-cloner
pkg.json
gh-fork-source
@isysd/gpm
gpm
pandemics
FAQs
Parse and stringify git urls in a friendly way.
The npm package git-source receives a total of 28,758 weekly downloads. As such, git-source popularity was classified as popular.
We found that git-source demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
A supply chain attack has been detected in versions 1.95.6 and 1.95.7 of the popular @solana/web3.js library.
Research
Security News
A malicious npm package targets Solana developers, rerouting funds in 2% of transactions to a hardcoded address.
Security News
Research
Socket researchers have discovered malicious npm packages targeting crypto developers, stealing credentials and wallet data using spyware delivered through typosquats of popular cryptographic libraries.