
Security News
vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
googleapis-nodejs-cloudbuild
Advanced tools
Google Cloud Build Client Library for Node.js (unofficial)
Table of contents:
Select or create a Cloud Platform project.
Enable billing for your project.
Enable the Google Cloud Build.
Set up authentication with a service account so you can access the API from your local workstation.
npm install --save googleapis-nodejs-cloudbuild
// Imports the Google Cloud client library
const { GCF } = require('googleapis-nodejs-cloudbuild');
// Your Google Cloud Platform project ID
const projectId = 'YOUR_PROJECT_ID';
// Creates a client
const gcf = new GCF({
keyFilename: './credentials.json',
projectId
});
// Get Triggers and metadata
gcf
.getCloudBuildTriggers()
.then(data => {
const fns = data[0];
//console.log('Cloud Build Triggers: ', fns);
const fn = fns[0];
console.log(fn.metadata);
})
.catch(err => {
console.error('ERROR:', err);
});
Apache Version 2.0
See LICENSE
FAQs
Google Cloud Build Client Library for Node.js (unofficial)
The npm package googleapis-nodejs-cloudbuild receives a total of 35 weekly downloads. As such, googleapis-nodejs-cloudbuild popularity was classified as not popular.
We found that googleapis-nodejs-cloudbuild demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.