
Security News
vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
A javascript / Typescript library to be able to read and write csv files
A CSV parser for javascript, typescript with no extra dependencies. Fully customizable and supports partial parsing of a basic csv file.
The changelog is available here
This package is bundled by vite. we provide 4 different bundles for different environments and those are:
✅ esm
✅ cjs
✅ umd
✅ iife
currently the parser supports a few features that is already implemented.
✅ Basic CSV parsing
✅ Extending CSV parsing
✅ CSV parsing with custom delimiters
✅ Results can be returned as an array of objects, JSON or Tuples (arrays)
✅ The option to parse every single column to a number if possible
✅ Number parse option for a column
the parser currently is supporting the following features:
"," and ";" as delimiters
\n as line breaks
" as quote character
" " as empty line
npm install sigma-csv
pnpm add sigma-csv
The documentation is available here
The roadmap is available here
If you have any suggestions, please feel free to open an issue or a pull request.
sigma-csv is licensed under the MIT License
Copyright (c) 2022-present, Beau den Heijer
FAQs
A javascript / Typescript library to be able to read and write csv files
The npm package sigma-csv receives a total of 0 weekly downloads. As such, sigma-csv popularity was classified as not popular.
We found that sigma-csv demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.