Security News
GitHub Removes Malicious Pull Requests Targeting Open Source Repositories
GitHub removed 27 malicious pull requests attempting to inject harmful code across multiple open source repositories, in another round of low-effort attacks.
A port of the grunt-sloc plugin for gulp with some minor changes.
NOTE Taken from gulp-sloc4 and modified for Gulp 4.00.
First install the gulp-sloc4
plugin as a development dependency:
npm install --save-dev gulp-sloc4
Then, add it to your gulpfile.js
:
var sloc = require('gulp-sloc4');
gulp.task('sloc', function(){
gulp.src(['scripts/*.js'])
.pipe(sloc());
});
This would output the following:
[gulp] -------------------------------
[gulp] physical lines : 135
[gulp] lines of source code : 97
[gulp] total comment : 5
[gulp] singleline : 5
[gulp] multiline : 0
[gulp] empty : 33
[gulp]
[gulp] number of files read : 2
[gulp] strict mode
[gulp] -------------------------------
Type: Boolean
, Default: false
Set as false to analyze only files with a subset of popular extensions. true to analyze files with any file extension. The default is false.
If true, the SLOC will be executed on all of the files specified, regardless of file extension. With tolerant
set to false
, or unspecified, only supported file extensions will be analyzed.
Type: String
, Default: stdout
It will generate a JSON file with the SLOC analysis results and sends it further downstream. Use with the reportFile
option if you want to customize the file name. You may want to pipe to the gulp.dest()
method to write it out to specified folder. Example:
var sloc = require('gulp-sloc4');
gulp.task('sloc', function(){
gulp.src(['lib/**/*.js'])
.pipe(sloc({
reportType: 'json'
}))
.pipe(gulp.dest('./reports/'));
});
Would output the following in the file ./reports/sloc.json
:
{"total":138,"source":100,"comment":5,"single":5,"block":0,"empty":33,"file":2}
Type: String
, Default: sloc.json
The name of the file which would contain you'd like to output the JSON file. Use with the json
as reportType
. Ignored if used with the stdout
report type. Example:
var sloc = require('gulp-sloc4');
gulp.task('sloc', function(){
gulp.src(['./test/**/*.js'])
.pipe(sloc({
reportType: 'json',
reportFile: 'testSloc.json'
}))
.pipe(gulp.dest('./reports/'));
});
Would output the sloc results in the file ./reports/testSloc.json
.
Type: Object
, Default:
{
before: '-------------------------------',
after: '-------------------------------',
mode: true
}
Options used to customize output message. Use with the stdout
as reportType
. Ignored if used with the json
report type.
before
- Line printed before report. Set to false
to disable line before report.after
- Line printed after report. Set to false
to disable line after report.mode
- Print strict/tolerant mode information if true
.Type: Array[String]
, Default: ['total', 'source', 'comment', 'single', 'block', 'mixed', 'empty', 'file']
Metrics that are returned in report.
js
coffee
or coffeescript
c
or cc
py
java
php
I'm getting a TypeError: Cannot read property 'toString' of null;
.
You probably have folders in your stream and sloc
tries to read their contents. Change this:
gulp.src(['src/**']).pipe(sloc())
To this:
gulp.src(['src/**'], {nodir: true}).pipe(sloc())
git checkout -b my-new-feature
)git commit -am 'Add some feature'
)git push origin my-new-feature
)FAQs
A port of the grunt-sloc plugin for gulp
We found that gulp-sloc4 demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
GitHub removed 27 malicious pull requests attempting to inject harmful code across multiple open source repositories, in another round of low-effort attacks.
Security News
RubyGems.org has added a new "maintainer" role that allows for publishing new versions of gems. This new permission type is aimed at improving security for gem owners and the service overall.
Security News
Node.js will be enforcing stricter semver-major PR policies a month before major releases to enhance stability and ensure reliable release candidates.