data:image/s3,"s3://crabby-images/7e228/7e2287ba60e21dee87416ea9983ec241b5307ec2" alt="vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance"
Security News
vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
sitemap-urls
Advanced tools
Extract URLs from an XML sitemap.
Install the Sitemap Urls command line tool:
npm install -g sitemap-urls
# or
yarn add -g sitemap-urls
Run sitemap-urls
on a file containing a sitemap:
sitemap-urls sitemap.xml
Also supports piping:
curl http://example.com/sitemap.xml | sitemap-urls
Usage: sitemap-urls <path> [<options>]
Path:
Path to a file containing an XML sitemap.
This parameter is ignored when the sitemap is being piped.
Options:
-h, --help Show this help text.
-v, --version Print sitemap-urls' version.
.extractUrls(string xml)
-> array
Extracts URLs from a string containing an XML sitemap.
Example result:
[
"http://example.com/",
"http://example.com/test/"
]
Sitemap Urls is released under the MIT license.
Copyright © 2015 Roland Warmerdam.
FAQs
Extract URLs from an XML sitemap.
The npm package sitemap-urls receives a total of 275 weekly downloads. As such, sitemap-urls popularity was classified as not popular.
We found that sitemap-urls demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.