Security News
GitHub Removes Malicious Pull Requests Targeting Open Source Repositories
GitHub removed 27 malicious pull requests attempting to inject harmful code across multiple open source repositories, in another round of low-effort attacks.
npm-cli-login
Advanced tools
Allows you to log in to NPM without STDIN, STDOUT. Use in places like CI build systems. Also creates entries in the ```~/.npmrc``` file for authentication.
Allows you to log in to NPM without STDIN, STDOUT. Use in places like CI build systems.
Also creates entries in the ~/.npmrc
file for authentication.
npm install -g npm-cli-login
Use -g flag to use npm-cli-login via the CLI
npm-cli-login
expects the following environment variables to be set before you can use it to authenticate:
NPM_USER
: NPM usernameNPM_PASS
: NPM passwordNPM_EMAIL
: NPM emailNPM_REGISTRY
: (optional) Private NPM registry to log in to (If not set, public NPM is used, https://registry.npmjs.org)NPM_SCOPE
: (optional) Private NPM scopeOnce the required ones are set, you can just run the following to log in:
npm-cli-login
You can also export variables and run it all in one line:
NPM_USER=testUser NPM_PASS=testPass NPM_EMAIL=test@example.com npm-cli-login
To use the package programmatically, just require the module and pass in your NPM auth details as arguments:
var npmLogin = require('npm-cli-login');
npmLogin(username, password, email [, registry, scope]);
Logging in to the NPM registry:
var npmLogin = require('npm-cli-login'),
username = 'testUser',
password = 'testPass',
email = 'test@example.com'
npmLogin(username, password, email)
Logging in to private NPM registries:
var npmLogin = require('npm-cli-login'),
username = 'testUser',
password = 'testPass',
email = 'test@example.com',
registry = 'https://npm.example.com',
scope = '@myScope'
npmLogin(username, password, email, registry, scope)
FAQs
Allows you to log in to NPM without STDIN, STDOUT. Use in places like CI build systems. Also creates/modifies entries in the ~/.npmrc file for authentication.
The npm package npm-cli-login receives a total of 27,334 weekly downloads. As such, npm-cli-login popularity was classified as popular.
We found that npm-cli-login demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 3 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
GitHub removed 27 malicious pull requests attempting to inject harmful code across multiple open source repositories, in another round of low-effort attacks.
Security News
RubyGems.org has added a new "maintainer" role that allows for publishing new versions of gems. This new permission type is aimed at improving security for gem owners and the service overall.
Security News
Node.js will be enforcing stricter semver-major PR policies a month before major releases to enhance stability and ensure reliable release candidates.