Security News
Research
Data Theft Repackaged: A Case Study in Malicious Wrapper Packages on npm
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
![Gitter](https://badges.gitter.im/Join Chat.svg)
shapeshift.io api for node.js
ShapeShift is an instant exchange for Litecoin, Bitcoin, Peercoin, Dogecoin, Darkcoin, and other crypto-currencies.
ShapeShift is the fastest way to exchange these digital currencies for one another. An exchange between crypto-currencies on ShapeShift takes only a few seconds, and no account is needed.
The benefit of this is an application or site could send a payout to a content provider paid out in a different currency than what the consumer paid with.
For example, Joe wants to be paid in Bitcoin, while Sally wants to pay him in Litecoin. ShapeShift allows you to convert the currency on behalf of the user.
npm install --save shapeshift
const shapeshift = require('shapeshift');
const pair = 'btc_ltc';
shapeshift.getRate(pair)
.then(function(data){
//do something w/ data
});
Get the current rate offered by Shapeshift.
const shapeshift = require('shapeshift');
const pair = 'btc_ltc';
shapeshift.getRate(pair)
.then(function(data){
const body = data.body;
//{"pair":"btc_ltc","rate":"93.83852691"}
};
Get the current deposit limit set by Shapeshift.
const shapeshift = require('shapeshift');
const pair = 'btc_ltc';
shapeshift.getLimit(pair)
.then(function(data){
const body = data.body;
//{"pair":"btc_ltc","limit":"1.98046131"}
});
Get the current list of coins supported by Shapeshift.
const shapeshift = require('shapeshift');
shapeshift.getCoins()
.then(data => {
const coins = data.body;
//{"pair":"btc_ltc","limit":"1.98046131"}
});
btc, ltc, ppc, drk, doge
Note: use an underscore to seperate currencies in a pair (ie: ltc_doge
or doge_ltc
)
https://info.shapeshift.io/api
License MIT
FAQs
shapeshift.io api for node.js
The npm package shapeshift receives a total of 12 weekly downloads. As such, shapeshift popularity was classified as not popular.
We found that shapeshift demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Research
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
Research
Security News
Attackers used a malicious npm package typosquatting a popular ESLint plugin to steal sensitive data, execute commands, and exploit developer systems.
Security News
The Ultralytics' PyPI Package was compromised four times in one weekend through GitHub Actions cache poisoning and failure to rotate previously compromised API tokens.