
Product
Announcing Precomputed Reachability Analysis in Socket
Socket’s precomputed reachability slashes false positives by flagging up to 80% of vulnerabilities as irrelevant, with no setup and instant results.
tm-nucleus
Advanced tools
Release notes can be found in our changelog.
node - v4.2.6. If you need to run a different version of node for other projects, check out either nvm or n.
scss lint - 0.41.0.
To install:
$ gem install scss_lint -v 0.41.0
gulp - Gulp comes as part of the package.json
and is accessed via the npm run
commands above. However, if you wish to run individual gulp tasks directly from the command line, you'll need to install the cli.
$ npm install --global gulp
svg4everybody - IE9-12 do not recognize externally referenced SVG files, so we use this polyfill to fill the gap. The minified version of the polyfill is included with the project. For more information, see: svg4everybody
In your terminal, enter the following from within the nucleus directory:
$ npm install
$ npm run app
This will automatically open up a new browser tab with Nucleus loaded. It will also monitor source files for any changes and compile them as needed. The browser will refresh automatically for changes.
To lint SASS files, run the following command in the terminal:
$ npm run lint
To update Nucleus's distribution files (minified css, images, fonts), run the following command:
$ npm run dist
MIT License
FAQs

The npm package tm-nucleus receives a total of 3,123 weekly downloads. As such, tm-nucleus popularity was classified as popular.
We found that tm-nucleus demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 7 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Product
Socket’s precomputed reachability slashes false positives by flagging up to 80% of vulnerabilities as irrelevant, with no setup and instant results.
Product
Socket is launching experimental protection for Chrome extensions, scanning for malware and risky permissions to prevent silent supply chain attacks.
Product
Add secure dependency scanning to Claude Desktop with Socket MCP, a one-click extension that keeps your coding conversations safe from malicious packages.