Security News
The Risks of Misguided Research in Supply Chain Security
Snyk's use of malicious npm packages for research raises ethical concerns, highlighting risks in public deployment, data exfiltration, and unauthorized testing.
hubot-rss-poller
Advanced tools
A simple poller for RSS feeds in hubot. It will alert to chat on updates to the feed polled on a regular interval.
This is a simple polling script used to poll RSS feeds and ping rooms when an update is found. All it requires is a file specified to read.
All you need is a .json
file with the following configurations set up.
This is loaded from the hubotrssconfig.json
file in the top level of the hubot
install, or you can specify in an environment variable HUBOT_RSS_CONFIG_FILE
.
{
"feeds": [{
"name": "Name of the RSS feed goes here",
"request": { // An object that contains the request parameters. Example not all inclusive
"uri": "URI to the RSS feed goes here",
"headers": {
"Method": "GET"
}
},
"room": "room to message out to when an update is found",
"pingInterval": "100", // How many seconds to wait before polling for update
"alertPrefix": "A prefix to the output message goes here.",
"alertSuffix": "a suffix to an output message goes here.",
"initialDelay": "3" // initial wait (in seconds) check to allow hubot to connect
}]
}
##Basic Auth
You can specify username
and password
on an individual feed, or place them
in the http Authorization header and they will work just fine. But if you're
like me and don't like having usernames and passwords sitting around in something
that is probably source controlled, you can specify them via two environment
variables. HUBOT_RSS_FEED_USERNAME
and HUBOT_RSS_FEED_PASSWORD
act as global
defaults to all feeds specified for this script. If you specify them as well as
the username
and password
properties, the properties overwrite the environment
variables.
FAQs
A simple poller for RSS feeds in hubot. It will alert to chat on updates to the feed polled on a regular interval.
The npm package hubot-rss-poller receives a total of 12 weekly downloads. As such, hubot-rss-poller popularity was classified as not popular.
We found that hubot-rss-poller demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Snyk's use of malicious npm packages for research raises ethical concerns, highlighting risks in public deployment, data exfiltration, and unauthorized testing.
Research
Security News
Socket researchers found several malicious npm packages typosquatting Chalk and Chokidar, targeting Node.js developers with kill switches and data theft.
Security News
pnpm 10 blocks lifecycle scripts by default to improve security, addressing supply chain attack risks but sparking debate over compatibility and workflow changes.