Research
Security News
Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
tipsi-stripe
Advanced tools
If you're building apps with React Native, please use Stripe's official React Native library.
If for some reason you cannot migrate to it now. And you can offer with testing new beta versions, please reach me in discord (name: cybergrind#4625). Just PM with github account name + platforms you can check will be enough. I will ping you when we have something to check.
Join our Discord channel to access the beta, to get support from the contributors, and to help us be aware of any issues you find. Here is the invite link: https://discord.gg/vmBxnBw
We'll make notifications on that channel as new beta releases are published, along with sharing documentation and handling questions.
p.s. if you are skilled at writing Appium tests, please raise your hand on the channel!
Cheers!
https://tipsi.github.io/tipsi-stripe/docs/index.html
# help us with docs!
npm install docusaurus
# to run docs locally
npm run start-docs
# and open http://localhost:3000/tipsi-stripe/docs/index.html
# upgrade existing docs website in repo
npm run build-docs
[9.0.0 - 2021-03-16 Bumped ios sdk and fixed xcode 12.5]
[8.0.0] - 2021-01-16 Breaking changes
[7.0.0] - 2019-01-08 Breaking changes
[6.0.0] - 2018-10-24 Breaking changes
[5.0.0] - 2018-03-21 Breaking changes
https://tipsi.github.io/tipsi-stripe/
# help us to upgrade docs locally
npm run start-docs
# upgrade existing docs website in repo
npm run build-docs
tipsi-stripe is available under the MIT license. See the LICENSE file for more info.
FAQs
React Native Stripe binding for iOS/Android platforms
We found that tipsi-stripe demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Security News
MITRE's 2024 CWE Top 25 highlights critical software vulnerabilities like XSS, SQL Injection, and CSRF, reflecting shifts due to a refined ranking methodology.
Security News
In this segment of the Risky Business podcast, Feross Aboukhadijeh and Patrick Gray discuss the challenges of tracking malware discovered in open source softare.