
Research
PyPI Package Disguised as Instagram Growth Tool Harvests User Credentials
A deceptive PyPI package posing as an Instagram growth tool collects user credentials and sends them to third-party bot services.
redux-auth-wrapper
Advanced tools
A utility library for handling authentication and authorization for redux and react-router
Decouple your Authentication and Authorization from your components!
npm install --save redux-auth-wrapper
redux-auth-wrapper is a utility library for handling authentication and authorization in react + redux applications.
Read the documentation at https://mjrussell.github.io/redux-auth-wrapper
Version 3.x has the same external API as version 2, however it only supports React >= 16.3. It is also tested with react-router v5 and connected-react-router which replaced react-router-redux.
Version 2.x is a big internal rewrite! It provides a massive increase in flexibility when using redux-auth-wrapper and also introduces some breaking changes. See the Migration Guide for more details if coming from 1.x. Or check out the Getting Started guide if you've never used redux-auth-wrapper before.
Looking for Version 1.x? You can browse the 1.x README here.
Having trouble? First check out the Troubleshooting section of the documentation, and then search the issues, both open and closed for your problem. If you are still having trouble or have a question on using redux-auth-wrapper, please open an issue! You can also ask on the gitter channel.
Other examples not yet updated to v2:
FAQs
A utility library for handling authentication and authorization for redux and react-router
The npm package redux-auth-wrapper receives a total of 31,246 weekly downloads. As such, redux-auth-wrapper popularity was classified as popular.
We found that redux-auth-wrapper demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
A deceptive PyPI package posing as an Instagram growth tool collects user credentials and sends them to third-party bot services.
Product
Socket now supports pylock.toml, enabling secure, reproducible Python builds with advanced scanning and full alignment with PEP 751's new standard.
Security News
Research
Socket uncovered two npm packages that register hidden HTTP endpoints to delete all files on command.