
Product
Introducing Pull Request Stories to Help Security Teams Track Supply Chain Risks
Socket’s new Pull Request Stories give security teams clear visibility into dependency risks and outcomes across scanned pull requests.

The iExec SDK is a CLI and a JS library that allows easy interactions with iExec decentralized marketplace in order to run off-chain computations.
The iExec javascript SDK can be imported in your frontend or backend JS project.
install
npm install iexec
import
import { IExec } from 'iexec';
Check the documentation
The iExec SDK comes with a command line interface enabling interactions with the decentralized marketplace from a terminal.
install
npm install -g iexec
# check commands
iexec help
Check the documentation
npm ci
npm run codegen
npm run build
Tests run on a local dockerized stack, the test stack must be started prior to running tests
# once before testing
npm run start-test-stack
-After some times the test stack may become desynchronized, run
npm run start-test-stackto refresh it.
npm run stop-test-stackwill teardown the test stack
Run tests when the stack is up
npm run test
Some tests relies on RPC API providers, to have them running smoothly you can provide the following envs
- ALCHEMY_API_KEY (obtained from https://alchemy.com)
- ETHERSCAN_API_KEY (obtained from https://etherscan.io)
- INFURA_PROJECT_ID (obtained from https://infura.io)
Find changes in the CHANGELOG
FAQs
iExec SDK
The npm package iexec receives a total of 250 weekly downloads. As such, iexec popularity was classified as not popular.
We found that iexec demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Product
Socket’s new Pull Request Stories give security teams clear visibility into dependency risks and outcomes across scanned pull requests.

Research
/Security News
npm author Qix’s account was compromised, with malicious versions of popular packages like chalk-template, color-convert, and strip-ansi published.

Research
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.