
Security News
vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
A very simple precompiler written in typescript. With it you can make a dynamically generated blocks in your code.
A very simple precompiler (written in typescript). With it you can make a dynamically generated blocks in your code.
npm i inprint --save-dev
yarn i inprint --save-dev
pnpm i inprint --save-dev
npm i -g inprint
yarn i -g inprint
pnpm i -g inprint
console.log("any code can be here");
// @INPRINT_START {my:"own params", json5:'is supported here!'}
// Anything here will be overwritten by generated code!
// @INPRINT_END
console.log("any code can be here");
module.exports.inprint = {
files:['src/**/*.{ts,tsx,js,jsx}'],
inprint: function inprint(paramsObject) {
return " // " + JSON.stringify(paramsObject);
}
}
Run inprint
The returned content will be inprinted between @INPRINT tags:
console.log("any code can be here");
// @INPRINT_START {my:"own params", json5:'is supported here!'}
// {my:"own params", json5:'is supported here!'}
// @INPRINT_END
console.log("any code can be here");
inprint function will receive the following additional paramaters:
absolutePath - absolute file path with inprint block
content - current content of the block
Options:
inprint - required, the function used to generate inprinted content
files - optional, globby input patterns, default is ['src/**/*.{ts,tsx,js,jsx}']
skipNodeModules- optional, if true will skip all path containing /node_modules/, default is true
FAQs
A very simple precompiler written in typescript. With it you can make a dynamically generated blocks in your code.
The npm package inprint receives a total of 0 weekly downloads. As such, inprint popularity was classified as not popular.
We found that inprint demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.