
Research
Malicious npm Packages Impersonate Flashbots SDKs, Targeting Ethereum Wallet Credentials
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
A thin, full-stack, web framework.
You might want to go to
@gracile/gracile
(with the@
scope).
This package is a stub. It will be re-used at a latter time.
Features:
Bootstrap a project with the create gracile@latest
command:
npm create gracile@latest
pnpm create gracile@latest
bun create gracile@latest
yarn create gracile@latest
For more information, head over to the documentation website (gracile.js.org).
Gracile is powered by Vite and Lit SSR.
With it, you can achieve:
Request
/Response
) for ExpressAll that, with a few conventions, a standard-oriented approach and a very contained footprint 🤏.
Web Components, TypeScript, SASS, Lit, and other DX perks are all at your fingertips; while remaining optional.
Thanks to the Vite modular architecture, and Node.js versatility, developer experience is smoothed up across the board, while in development and when building for production.
See CONTRIBUTING.md.
“Perfection is achieved, not when there is nothing more to add, but when there is nothing left to take away.”
― Antoine de Saint-Exupéry, Airman's Odyssey
FAQs
A thin, full-stack, web framework. Powered by Vite and Lit SSR.
The npm package gracile receives a total of 1 weekly downloads. As such, gracile popularity was classified as not popular.
We found that gracile demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
Security News
Ruby maintainers from Bundler and rbenv teams are building rv to bring Python uv's speed and unified tooling approach to Ruby development.
Security News
Following last week’s supply chain attack, Nx published findings on the GitHub Actions exploit and moved npm publishing to Trusted Publishers.