
Security News
The Hidden Blast Radius of the Axios Compromise
The Axios compromise shows how time-dependent dependency resolution makes exposure harder to detect and contain.
gulp-tdsl-parser
Advanced tools
TDSL (Test Description Script Language), 测试描述脚本语言,是一套高效简洁描述测试代码的规范脚本语法。
TODO:
1,自动插件化 tdsl.config.js 并分析合并。已完成
2,数据转换类模块用例分析(测试验证函数IO是否符合预期) 已完成
3,请求数据并dispatch数据类型模块分析(Mock接口数据,验证dispatch后对应节点数据是否符合预期) 已完成
4,ui事件触发类型函数分析(事件模拟,判断是否调用对应的其它模块以及调用的次数) 已完成
5,ui渲染类节点特性判断(渲染,然后节点查询对应的节点) 官方小程序UI测试存在明显缺陷,暂不去支持
6, 自动分析计算所有的路径。 完成
7, gulp-tdsl 支持
FUTURE TODO:
//
FAQs
unit test descriptiton script language
The npm package gulp-tdsl-parser receives a total of 9 weekly downloads. As such, gulp-tdsl-parser popularity was classified as not popular.
We found that gulp-tdsl-parser demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
The Axios compromise shows how time-dependent dependency resolution makes exposure harder to detect and contain.

Research
A supply chain attack on Axios introduced a malicious dependency, plain-crypto-js@4.2.1, published minutes earlier and absent from the project’s GitHub releases.

Research
Malicious versions of the Telnyx Python SDK on PyPI delivered credential-stealing malware via a multi-stage supply chain attack.