
Security News
Attackers Are Hunting High-Impact Node.js Maintainers in a Coordinated Social Engineering Campaign
Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.
Official Site: https://github.com/DracoBlue/spludo
Spludo is copyright 2009-2014 by DracoBlue http://dracoblue.net
Spludo is high performance, evented, server side, prototype based, javascript mvc web framework. It includes DI+AOP and a Convention-Over-Configuration Approach. The framework is running on the node.JS-platform, which employs the lightning fast V8-Engine.
Create the new project
$ spludo/spludo-gen new-project
Enter the folder
$ cd myapp
Run
In Server Mode
$ node run_server.js
and open your browser at http://localhost:8000/
In Console Mode
$ node run_console.js shell.hello
Hello, back!
This package contains a USERGUIDE.md with a big introduction into the framework.
Spludo is licensed under the terms of MIT. See LICENSE for more information.
FAQs
Spludo Framework README =======================
We found that spludo demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.

Security News
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.

Security News
Node.js has paused its bug bounty program after funding ended, removing payouts for vulnerability reports but keeping its security process unchanged.