Security News
Research
Data Theft Repackaged: A Case Study in Malicious Wrapper Packages on npm
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
rsbuild-plugin-html-minifier-terser
Advanced tools
An Rsbuild plugin to use [html-minifier-terser](https://github.com/terser/html-minifier-terser) to minify the HTML outputs.
An Rsbuild plugin to use html-minifier-terser to minify the HTML outputs.
Install:
npm add rsbuild-plugin-html-minifier-terser -D
Add plugin to your rsbuild.config.ts
, HTML will be minified by default and JS minimization affected by Rsbuild's config.
// rsbuild.config.ts
import { pluginHtmlMinifierTerser } from 'rsbuild-plugin-html-minifier-terser'
export default {
plugins: [pluginHtmlMinifierTerser()],
}
The plugin could accept an parameter of type HtmlMinifierOptions | ((options: HtmlMinifierOptions) => HtmlMinifierOptions)
.
Passing options to customize the minification, fields listed in the options will override the default options.
export default {
plugins: [
pluginHtmlMinifierTerser({
// `minifyCSS` will be set to false
minifyCSS: false,
}),
],
}
A callback function can be passed to the plugin to customize the minification options based on the default options, and the return value will be used as the final options.
export default {
plugins: [
pluginHtmlMinifierTerser((options) => {
// customize options here
return options
}),
],
}
MIT.
FAQs
An Rsbuild plugin to use [html-minifier-terser](https://github.com/terser/html-minifier-terser) to minify the HTML outputs.
We found that rsbuild-plugin-html-minifier-terser demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Research
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
Research
Security News
Attackers used a malicious npm package typosquatting a popular ESLint plugin to steal sensitive data, execute commands, and exploit developer systems.
Security News
The Ultralytics' PyPI Package was compromised four times in one weekend through GitHub Actions cache poisoning and failure to rotate previously compromised API tokens.