
Research
Malicious npm Packages Impersonate Flashbots SDKs, Targeting Ethereum Wallet Credentials
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
node-karin
Advanced tools
karin
(卡琳)是一款灵活、现代、极易扩展的 Node.js 插件化应用框架,专为开发者打造,助你轻松构建属于自己的高效工具链和自动化服务。
🎉 重要更新:感谢 valqelyan 的慷慨转让,从 2.0 版本开始,我们将正式使用
karin
作为 npm 包名! Important Update: Thanks to valqelyan's generous transfer, starting from version 2.0, we will officially usekarin
as our npm package name!
✨ 主要特性:
🦄 让开发变得像魔法一样有趣!
自 1.8.0
版本起,Karin 已进入稳定长期维护阶段。我们承诺持续修复 bug、优化体验,并欢迎社区力量共同完善生态。
一键初始化:pnpm create karin
当前文档可能存在滞后性,欢迎加入交流群(967068507)一起玩耍、提建议!
Karin 现已稳定,放心食用!遇到问题欢迎提 Issue 或加群讨论,我们会持续优化。
我们提供多个文档站点供您访问,解决可能出现的访问困难:
💡 主文档站托管在 GitHub 上,如访问不畅,推荐使用 Deno 镜像站
感谢 valqelyan 将 karin
npm 包名转让给我们!这位伟大的开发者将他们闲置的包名无偿转让,让 Karin 项目能够在 2.0 版本正式启用 karin
这个更直观的包名。
Thanks to valqelyan for transferring the karin
npm package name to us! This amazing developer generously transferred their unused package name, allowing the Karin project to officially use the more intuitive karin
package name starting from version 2.0.
相关讨论请见:valqelyan/karin#6
🧙♂️ 感谢四位大佬的魔法加持!
🌟 星光闪烁,你们的智慧如同璀璨的夜空。感谢所有为 Karin 做出贡献的人!
🎉 加入我们,让 Karin 成为你开发路上的贴心伙伴!
💡 欢迎任何形式的贡献,无论是代码、文档、建议还是灵感!
本项目基于 MIT License 开源,欢迎自由使用、修改和分发。
📢 记得给个 Star 支持我们,你的支持是我们最大的动力!
我们定期发布更新,查看 CHANGELOG 了解最新变化。
FAQs
Lightweight, efficient, concise, and stable robot framework.
The npm package node-karin receives a total of 59 weekly downloads. As such, node-karin popularity was classified as not popular.
We found that node-karin demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
Security News
Ruby maintainers from Bundler and rbenv teams are building rv to bring Python uv's speed and unified tooling approach to Ruby development.
Security News
Following last week’s supply chain attack, Nx published findings on the GitHub Actions exploit and moved npm publishing to Trusted Publishers.