
Security News
vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
This is an experimental jira command line tool that allows viewing, editing, updating, transitioning and deleting jira content as if it was done on the Jira website.
npm install -g jira-tool
s
jql
add
set
remove
transition
init
Display data from an issue
jira s 12345
Or
jira s KEY-12345
Display issues from a JQL query
jira jql "fixVersion = 1.6.0 AND component IN (Foo, Bar, Baz)"
Add a component
jira add 12345 component Foo
Remove a Fix Version
jira remove 12345 "Fix Version" "1.8.0"
Update a custom field
jira set 12345 "Branch Name" "FooBar"
jira init
This prompts the user for the configuration of the jira account
url
Url for jirausername
Jira usernamepassword
Jira passwordissue-key-prefix
Prefix for an issue key. e.g if issue key is FOO-12345 then FOO can be entered so 12345 can be used on the command linejira s 12345
Display data from a single jira issue
jira jql "fixVersion IN (1.3.0, 1.4.0) AND component = Foo"
Query Jira for a specified list of issues
jira add 12345 fixVersion "1.6.2"
Add data to a specific field
jira set 12345 "Branch Name" "foo-bar"
Set data for a specific field
jira remove 12345 component FooBar
Remove data from a specific field
FAQs
Command line interface for jira issues
The npm package jira-tool receives a total of 0 weekly downloads. As such, jira-tool popularity was classified as not popular.
We found that jira-tool demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.