Research
Security News
Malicious npm Package Targets Solana Developers and Hijacks Funds
A malicious npm package targets Solana developers, rerouting funds in 2% of transactions to a hardcoded address.
kamikaze-two
Advanced tools
The starter is built on top of Vite 2.x and prepared for writing libraries in TypeScript. It generates a hybrid package - both support for CommonJS and ESM modules.
The starter is built on top of Vite 2.x and prepared for writing libraries in TypeScript. It generates a hybrid package - both support for CommonJS and ESM modules.
This is a template repo. Click the green Use this template button to get started.
If you prefer to do it manually with the cleaner git history
git clone https://github.com/kbysiec/vite-vanilla-ts-lib-starter.git
cd vite-vanilla-ts-lib-starter
npm i
When you use this template, update the following:
.git
directory and run git init
to clean up the historypackage.json
- it will be the name of the IIFE bundle global variable and bundle files name (.cjs
, .mjs
, .iife.js
, d.ts
)LICENSE
README
and CHANGELOG
filesAnd, enjoy :)
The starter contains the following scripts:
dev
- starts dev serverbuild
- generates the following bundles: CommonJS (.cjs
) ESM (.mjs
) and IIFE (.iife.js
). The name of bundle is automatically taked from package.json
name propertytest
- starts jest and runs all teststest:coverage
- starts jest and run all tests with code coverage reportlint:scripts
- lint .ts
files with eslintlint:styles
- lint .css
and .scss
files with stylelintformat:scripts
- format .ts
, .html
and .json
files with prettierformat:styles
- format .cs
and .scss
files with stylelintformat
- format all with prettier and stylelintprepare
- script for setting up husky pre-commit hookIf you found it useful somehow, I would be grateful if you could leave a star in the project's GitHub repository.
Thank you.
FAQs
The starter is built on top of Vite 2.x and prepared for writing libraries in TypeScript. It generates a hybrid package - both support for CommonJS and ESM modules.
The npm package kamikaze-two receives a total of 1 weekly downloads. As such, kamikaze-two popularity was classified as not popular.
We found that kamikaze-two demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
A malicious npm package targets Solana developers, rerouting funds in 2% of transactions to a hardcoded address.
Security News
Research
Socket researchers have discovered malicious npm packages targeting crypto developers, stealing credentials and wallet data using spyware delivered through typosquats of popular cryptographic libraries.
Security News
Socket's package search now displays weekly downloads for npm packages, helping developers quickly assess popularity and make more informed decisions.