
Security News
/Research
Wallet-Draining npm Package Impersonates Nodemailer to Hijack Crypto Transactions
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
taobao-openapi
Advanced tools
淘宝开放平台SDK,用于node平台
npm install taobao-openapi --save
var Taobao = require("taobao-openapi");
var top = new Taobao({
app_key: "yourAppKey",
app_secret: "yourAppSecret"
});
top.get("taobao.shop.get", {
nick: "nickname",
fields: "sid,cid,nick,title,desc,shop_score"
}, function(err, body){
if(err){
return console.log(err);
}
console.log(body);
});
top.post("taobao.shop.get", {
nick: "nickname",
fields: "sid,cid,nick,title,desc,shop_score"
}, function(err, body){
if(err){
return console.log(err);
}
console.log(body);
});
get请求:
top.get(method, [config], args, callback)
method:api接口名称
config:可选,配置对象,只对当前请求有效
args:接口参数
callback:回调函数,包含错误参数err和响应body
post请求:
top.post(method, [config], args, callback)
method:api接口名称
config:可选,配置对象,只对当前请求有效
args:接口参数
callback:回调函数,包含错误参数err和响应body
获取所有订单:
args = {
start_created: 'yourStartTime',
end_created: 'yourEndTime'
};
top.getAllTrades(args, callback)
args:接口参数
具体参考 文档
1、configure
配置全局参数
top.configure({
session: "yourSession"
});
attribute | description | default |
---|---|---|
session | session | null |
debug | 是否开启沙箱 | false |
https | https请求 | false |
目前只支持json响应格式,不支持xml格式;
目前只支持MD5加密方法;
欢迎fork!
FAQs
api client for taobao open platform
The npm package taobao-openapi receives a total of 0 weekly downloads. As such, taobao-openapi popularity was classified as not popular.
We found that taobao-openapi demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
/Research
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
Security News
This episode explores the hard problem of reachability analysis, from static analysis limits to handling dynamic languages and massive dependency trees.
Security News
/Research
Malicious Nx npm versions stole secrets and wallet info using AI CLI tools; Socket’s AI scanner detected the supply chain attack and flagged the malware.