
Security News
vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
tools-sprite
Advanced tools
tools helper for image sprite, need improvement on create sprite. what it is for, it is for user who manage image raw with a bunch images, and folder.
tools helper for image sprite, need improvement on create sprite. what it is for, it is for user who manage image raw with a bunch images, and folder.
note !! make sure folder and asset (image) serliazed
|---Images
|---------Images_1.png
|---------Images_2.png
|---------Images_3.png
how to use
## change size
pnpm tool-sprite <directory_path> --size 360x360
after this command running its folder change to new name, and asset follow with serial number
## change folderName and aset name
pnpm tool-sprite <directory_path> --changeFDname "<folder_name>"
and this make 3 file, sprite.png, sprite.json, sprite.html you can check preview with running HTML
## create sprite image
pnpm tool-sprite <directory_path> --createSprite "<max_width>"
FAQs
tools helper for image sprite, need improvement on create sprite. what it is for, it is for user who manage image raw with a bunch images, and folder.
The npm package tools-sprite receives a total of 0 weekly downloads. As such, tools-sprite popularity was classified as not popular.
We found that tools-sprite demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.