Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
sanity-plugin-vercel-deploy
Advanced tools
Trigger Vercel Deploy Hooks from your Sanity Studio.
✨ LIVE status updates ✨ multiple deployments ✨ active polling ✨
Run the following command in your studio folder using the Sanity CLI:
sanity install vercel-deploy
Once installed, you should see a new "Deploy" tool in your Sanity Studio navbar.
Create a new deployment by clicking Create New
:
Next, you'll be prompted to add the following:
Title
A name for your deployment. This can be whatever you want, to help you organize your deployments. Typically, this should be the environment you are deploying to, likeProduction
orStaging
Vercel Project Name
This is the actual Project Name listed in your Vercel account. Navigate to your Project Settings within Vercel to find your Project Name.
Deploy Hook URL
This is the Vercel Deploy hook you want to trigger. You can set these up within your Vercel Project, under Settings -> Git and scroll down to the "Deploy Hooks" section. Create your desired hook (ie. "Production Deploy" onmaster
branch)
Vercel Token
This is a token from your Vercel Account (not project). Navigate to your Account Settings, and go to "Tokens". Create a new Token, giving it a recognizable name for what it's being used for, like "Sanity Deploy". A Token will be generated for you to copy once.
😎 Once you've created your deployment you can now trigger deploys at anytime!
nickdimatteo.com · Github @ndimatteo · Instagram @ndimatteo
FAQs
Trigger Vercel Deploy Hooks from your Sanity Studio
The npm package sanity-plugin-vercel-deploy receives a total of 1,348 weekly downloads. As such, sanity-plugin-vercel-deploy popularity was classified as popular.
We found that sanity-plugin-vercel-deploy demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.