
Product
Introducing Pull Request Stories to Help Security Teams Track Supply Chain Risks
Socket’s new Pull Request Stories give security teams clear visibility into dependency risks and outcomes across scanned pull requests.
niconizer-slack
Advanced tools
$ npm i -g niconizer-slack
To use niconizer-slack, you need to create a Slack App. You can use the provided manifest file to quickly set up the app:
niconizer-slack-manifest.json
and paste it into the JSON tabxoxb-
) - this is your -t/--token
connections:write
scopexapp-
) - this is your -a/--app-token
The manifest configures the app with:
Usage: niconizer-slack [options]
Options:
-t, --token <token> slack bot/user token (env: SLACK_TOKEN)
-a, --app-token <token> slack app token (env: SLACK_APP_TOKEN)
-u, --url <url> websocket server url (default: "ws://localhost:25252")
-c, --channel <channel> slack channel name/id to listen
-C, --exclude-channels <channel...> slack channel name/id to exclude
-U, --exclude-users <user...> slack user name/id to exclude
-T, --no-thread exclude thread reply
-B, --no-bot exclude bot user
--show-username show username in the message
-L, --no-logging disable logging
-j, --json enable json logging
-h, --help output usage information
$ niconizer-slack -t SLACK_API_TOKEN_HERE -a SLACK_APP_TOKEN_HERE
Both token (-t) and app-token (-a) are required. Other options are optional.
If no channel was specified, all messages in the authorization scope of the token in the workspace are send to the niconizer.
Press Ctrl+C
to exit.
FAQs
CLI that watch slack messages and send to niconizer.
We found that niconizer-slack demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Product
Socket’s new Pull Request Stories give security teams clear visibility into dependency risks and outcomes across scanned pull requests.
Research
/Security News
npm author Qix’s account was compromised, with malicious versions of popular packages like chalk-template, color-convert, and strip-ansi published.
Research
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.