Research
Security News
Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Copies labels from one repo to another
Having a standard list of labels across all of your projects means that you can move between repositories quickly and effectively. However, manually adding labels to a new GitHub repository can become old, fast. This module aims to save you time by automating the addition of labels to a new project by copying them from a selected repo and then transferring them to a target repo.
Our main criteria is that it MUST be quicker than manually adding labels.
A quick and easy way to add an existing list of standardised labels to a GitHub repo.
Any developer who has created multiple repositories and values their time ⏰
A simple and intuitive UI authenticated with GitHub. It will include the following fields:
FAQs
Copies labels from one repo to another
We found that labels demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Security News
MITRE's 2024 CWE Top 25 highlights critical software vulnerabilities like XSS, SQL Injection, and CSRF, reflecting shifts due to a refined ranking methodology.
Security News
In this segment of the Risky Business podcast, Feross Aboukhadijeh and Patrick Gray discuss the challenges of tracking malware discovered in open source softare.