
Security News
Attackers Are Hunting High-Impact Node.js Maintainers in a Coordinated Social Engineering Campaign
Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.
SIDI is a human friendly tool to create the yaml to test, build, and deploy any mobile project via the chosen CICD.
SIDI is a user-friendly CLI tool designed to streamline the creation of YAML files for testing, building, and deploying mobile projects on Bitrise and Codemagic.
SIDI simplifies CI/CD setup by guiding you through the creation of optimized YAML configuration files.
It ensures:
With SIDI, you'll answer a few questions about your project and desired CI/CD setup, and it will do the heavy lifting for you!
Setting up a project from scratch on CI/CD platforms like Bitrise and Codemagic can be complex and time-consuming. Each platform uses unique workflows, making it harder to manage as the number of workflows grows.
SIDI makes the process:
With SIDI, you can:
SIDI asks a series of questions about:
sidi-cli u for updates.| CI/CD | Status |
|---|---|
| Bitrise | ✅ Supported |
| Codemagic | ✅ Supported |
| Project Type | Status |
|---|---|
| React Native | ✅ Supported |
| Flutter | 🛠️ WIP |
| Native iOS | ✅ Supported |
| Native Android | ✅ Supported |
(Working only with) End-to-End testing starter pack
| CI/CD | Status |
|---|---|
| Bitrise | ❌ Unsupported |
| Codemagic | ✅ Supported |
Install SIDI using either npm or yarn:
yarn global add sidi-cli
# OR
npm install -g sidi-cli
SIDI offers a variety of commands to suit your needs.
For a detailed list of commands, refer to the Commands Overview.
When creating a workflow, SIDI groups steps based on:
A complete list of these steps is available here.
Find detailed instructions here.
Follow the steps here.
Learn more here.
This project is licensed under the MIT License. See the LICENSE file for details.
FAQs
SIDI is a human friendly tool to create the yaml to test, build, and deploy any mobile project via the chosen CICD.
We found that sidi-cli demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.

Security News
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.

Security News
Node.js has paused its bug bounty program after funding ended, removing payouts for vulnerability reports but keeping its security process unchanged.