
Research
5 Malicious Chrome Extensions Enable Session Hijacking in Enterprise HR and ERP Systems
Five coordinated Chrome extensions enable session hijacking and block security controls across enterprise HR and ERP platforms.
relay-flow-types-installer
Advanced tools
This package installs Flow type definitions for all locally installed Relay packages. It's a workaround in waiting for https://github.com/facebook/relay/pull/2690 to land.
This package installs Flow type definitions for all locally installed Relay packages. It's a workaround in waiting for https://github.com/facebook/relay/pull/2690 to land.
This is not a classic Flow libdef as seen in the flow-typed project. Rather, this is the actual typed source code exported alongside the built sources for Relay. This has a few implications:
.flowconfig to support all features and have all options needed to support how Relay's Flow types are written. More on that below.You must have rsync installed and available to your shell.
Install the package:
yarn add --dev relay-flow-types-installer
Add it to your postinstall in package.json:
# package.json
"scripts": {
...
"postinstall": "relay-flow-types-installer"
}
There, all set up!
Well, in order for this to work you'll need to tweak your .flowconfig to support all the things that that particular Relay release supported. To get this sorted it's recommended to look at the .flowconfig of the Relay release you're using and tweak your .flowconfig in accordance. You can find Relay's .flowconfig for any particular release by going to https://github.com/facebook/relay/blob/v5.0.0/.flowconfig and switching the version tag in the URL to your target version.
The package contains the Relay code base exported as .js.flow-files for Relay versions 2.0.0, 3.0.0, 4.0.0 and 5.0.0. It ships with a script that looks through your project package.json, finds Relay-related packages, and adds the Flow typed source alongside those packages right inside of your node_modules. This achieves the same thing as the PR mentioned above will, which is that the packages ship with their Flow types.
Following the instructions and setting up the script to run postinstall ensures that the types are always installed when you tweak or re-install your node_modules.
FAQs
This package installs Flow type definitions for all locally installed Relay packages. It's a workaround in waiting for https://github.com/facebook/relay/pull/2690 to land.
The npm package relay-flow-types-installer receives a total of 22 weekly downloads. As such, relay-flow-types-installer popularity was classified as not popular.
We found that relay-flow-types-installer demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
Five coordinated Chrome extensions enable session hijacking and block security controls across enterprise HR and ERP platforms.

Research
Node.js patched a crash bug where AsyncLocalStorage could cause stack overflows to bypass error handlers and terminate production servers.

Research
/Security News
A malicious Chrome extension steals newly created MEXC API keys, exfiltrates them to Telegram, and enables full account takeover with trading and withdrawal rights.