
Security News
Axios Supply Chain Attack Reaches OpenAI macOS Signing Pipeline, Forces Certificate Rotation
OpenAI rotated macOS signing certificates after a malicious Axios package reached its CI pipeline in a broader software supply chain attack.
pg-simple-migrations
Advanced tools
Very simple postgresSQL migration library. Only allowed 'up' migrations, that means that is not possible to do rollback or create 'down' migration. If you need to change something about before migration you need crete new .sql file and migrate.
$ npm install pg-simple-migrations
Set DATABASE_URL env variable to connect to postgres instance:
The command to run the migration is: pgsm. After that command you need to specify the folder path to your migration folder: pgsm /migrations. Use in package.json as independet command or before running the app.
"scripts": {
"start": "pgsm /migrations && node server.js",
"migrate": "pgsm /migrations"
},
The .sql files inside you migration folder should be named as following:
00001-tables.sql
00002-data.sql
The migrations will aply in that order, so if you have more that one file to migrate make sure it ordered wit number prefix correctly
FAQs
PostgreSQL simple database migrations tool
We found that pg-simple-migrations demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
OpenAI rotated macOS signing certificates after a malicious Axios package reached its CI pipeline in a broader software supply chain attack.

Security News
Open source is under attack because of how much value it creates. It has been the foundation of every major software innovation for the last three decades. This is not the time to walk away from it.

Security News
Socket CEO Feross Aboukhadijeh breaks down how North Korea hijacked Axios and what it means for the future of software supply chain security.