
Security News
Another Round of TEA Protocol Spam Floods npm, But It’s Not a Worm
Recent coverage mislabels the latest TEA protocol spam as a worm. Here’s what’s actually happening.
gobble-grapher
Advanced tools
Displays an interactive graph of your GobbleJS workflow
Gobble-grapher is a small tool to help developers understand what is going on in GobbleJS workflows, specially in complex ones.
Gobble-grapher starts a trivial node.js webserver, which will serve a D3-powered interactive directed graph, much like the following image:

As usual, run npm install --save gobble-grapher or npm install --save-dev gobble-grapher before trying to use it.
Note that gobble-grapher is not a gobble plugin, and you won't be interactively prompted about installing it.
If the end of your gobblefile looks like this:
module.exports = gobble([js, css, whatever]);
Just wrap the last gobble node into a gobble-graph call, like this:
var gobbleGrapher = require('gobble-graph');
module.exports = gobbleGrapher( gobble([js, css, whatever]) );
Then run gobble as usual, or js gobblefile.js if you don't need the build and just want to see the graph. After that, point your favourite web browser to http://localhost:4568.
The graph is interactive: drag the nodes to move them around.
The ideal way to use gobble-grapher is to graph the last node in the workflow. Wrapping other nodes may lead to unexpected results.
Gobble-grapher is very young and does the bare minimum. Right now it does not:
It also requires an active connection to the internet to pull the D3 library from a CDN.
"THE BEER-WARE LICENSE": ivan@sanchezortega.es wrote this file. As long as you retain this notice you can do whatever you want with this stuff. If we meet some day, and you think this stuff is worth it, you can buy me a beer in return.
FAQs
Displays an interactive graph of your GobbleJS workflow
We found that gobble-grapher demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Recent coverage mislabels the latest TEA protocol spam as a worm. Here’s what’s actually happening.

Security News
PyPI adds Trusted Publishing support for GitLab Self-Managed as adoption reaches 25% of uploads

Research
/Security News
A malicious Chrome extension posing as an Ethereum wallet steals seed phrases by encoding them into Sui transactions, enabling full wallet takeover.