
Research
PyPI Package Disguised as Instagram Growth Tool Harvests User Credentials
A deceptive PyPI package posing as an Instagram growth tool collects user credentials and sends them to third-party bot services.
node-mdbapi
Advanced tools
A Node.JS wrapper for The Movie DB API.
yarn add node-mdbapi
or
npm install node-mdbapi
const MovieDB = require('node-mdbapi');
// ES6 Style
// import MovieDB from 'node-mdbapi';
const mdb = new MovieDB(/* Your API Key */, options);
(async () => {
try {
const args = {
pathParameters: {
movie_id: 384018,
},
};
const movie = await mdb.movies.getDetails(args);
console.log(movie);
/*
{
data: Object. Parsed json data of response
header: Object. Headers of response
rateLimit: {
limit: Number. Total limit for requests
remaining: Number. How much request remaining
reset: Number. Time to refresh rate limit
}
}
*/
} catch (error) {
console.error(error);
}
})();
const args = {
pathParameters: {
// path parameters for query, i.e. movie_id
},
query: {
// query string, i.e. session_id
// NOTE: api_key and language will be added to query by default, don't need specify these values
},
body: {
// data for request body
},
};
const response = await mdb.tv.getVideos(args);
// Or nested methods
// const response = await mdb.tv.episode.rateTVEpisode(args);
Your API key. How to get API key
'en-US'
Additional options, which will be override the default settings
Sets API key
Your API key
Sets language for data of response
Language in ISO 639-1 format. I.e. 'en-US'
All errors extends Node's Error
Throws when server responses with http status code 400
0
400
Throws when set invalid api key
7
401
Throws when requested resource couldn't be found
34
404
Throws when request timed out
0
408
Throws when expired rate limit
0
429
FAQs
A Node.JS wrapper for The Movie DB API.
The npm package node-mdbapi receives a total of 77 weekly downloads. As such, node-mdbapi popularity was classified as not popular.
We found that node-mdbapi demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
A deceptive PyPI package posing as an Instagram growth tool collects user credentials and sends them to third-party bot services.
Product
Socket now supports pylock.toml, enabling secure, reproducible Python builds with advanced scanning and full alignment with PEP 751's new standard.
Security News
Research
Socket uncovered two npm packages that register hidden HTTP endpoints to delete all files on command.