
Security News
pnpm 10.16 Adds New Setting for Delayed Dependency Updates
pnpm's new minimumReleaseAge setting delays package updates to prevent supply chain attacks, with other tools like Taze and NCU following suit.
node-red-contrib-diode
Advanced tools
A simple node to isolate the output of a node or function to that further processing cannot affect the original.
Node-Red-Contrib-Diode is a Node-Red node designed to isolate output from input. That's it, nothing more.
As messages are normally passed by REFERENCE (as against value). If passing a message from one function to another, there may be times when you want to ensure that any changes you make in the second function are not reflected back into the first - see below for more info. This node will do that for you by making a copy of your message and passing it on.
Of course, passing an object by value uses up slightly more resources than passing by reference so depending on your objects and resources you might not wish to go TOO wild with this?
Oh - and you'd want this for what reason? Should you use node-send to two outputs - and the first one passes onto a node that ALTERS say msg.payload - then your second output could find itself ALTERED! Attaching this node to the first output in these circumstances could prevent such interference.
See http://tech.scargill.net/saturday-node-red-sermon for where this idea came from and why I created it. Many thanks to feedback from blog readers, Mr Shark for the name and of course Dave CJ of Node-Red fame for the needed function.
FAQs
A simple node to isolate the output of a node or function to that further processing cannot affect the original.
The npm package node-red-contrib-diode receives a total of 29 weekly downloads. As such, node-red-contrib-diode popularity was classified as not popular.
We found that node-red-contrib-diode demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
pnpm's new minimumReleaseAge setting delays package updates to prevent supply chain attacks, with other tools like Taze and NCU following suit.
Security News
The Rust Security Response WG is warning of phishing emails from rustfoundation.dev targeting crates.io users.
Product
Socket now lets you customize pull request alert headers, helping security teams share clear guidance right in PRs to speed reviews and reduce back-and-forth.