
Research
/Security News
OpenAPI React Query Codegen Compromised in Mini Shai-Hulud npm Supply Chain Attack
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.
react-chrome-extension
Advanced tools
npm i to install dependanciesnpm start to start running the fast development mode Webpack build process that bundle files into the dist foldernpm i --save-dev <package_name> to install new packageschrome://extensions/Developer mode in the top right cornerLoad unpackeddist foldergit init to start a new git repo for tracking your changes, do an initial base commit with all the default filespackage.json, important fields include author, version, name and descriptionmanifest.json, important fields include version, name and descriptionwebpack.commmon.js, the title in the getHtmlPlugins function should be your extension namenpm run build to generate a minimized production build in the dist folderdist folder (e.g. dist.zip)icon.png instead of ../static/icon.png)Partner center: https://partner.microsoft.com/en-us/dashboard/microsoftedge/6c8cbd1e-4817-4b37-8a66-ac1ff9ee3bf1/packages/dashboard
API Keys: https://partner.microsoft.com/en-us/dashboard/microsoftedge/publishapi
Web Ext: https://extensionworkshop.com/documentation/develop/web-ext-command-reference/#web-ext_sign
Edge Docs: https://learn.microsoft.com/en-us/microsoft-edge/extensions-chromium/publish/publish-extension
https://microsoftedge.microsoft.com/addons/detail/ehocanhnhbdiobliklhnfbaflmfmdccd
FAQs
react chrome extension template
The npm package react-chrome-extension receives a total of 10 weekly downloads. As such, react-chrome-extension popularity was classified as not popular.
We found that react-chrome-extension demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.

Security News
Socket joins more than 100 technology, cybersecurity, and financial organizations calling for a global surge in cyber defense.

Product
Enterprise security teams can now detect malware, credential theft, suspicious network activity, and risky updates across Microsoft Edge extensions.