
Security News
vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
$ npm i -g tinyjpg
or
$ yarn global add tinyjpg
set api key
$ tinyjpg config add key <api key>
reset api key
$ tinyjpg config remove key
add ignore folder
$ tinyjpg config add ignore <folder>
remove ignore folder
$ tinyjpg config remove ignore <folder>
get config list
$ tinyjpg config list
compress file
$ tinyjpg compress <filename>
compress all images of dir
$ tinyjpg compress <dir>
compress all images of dir and output
$ tinyjpg compress <dir> <output>
FAQs
compress images by tinypng api
The npm package tinyjpg receives a total of 7 weekly downloads. As such, tinyjpg popularity was classified as not popular.
We found that tinyjpg demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.