
Security News
pnpm 11.5 Adds Support for Recognizing npm Staged Publishes
pnpm 11.5 now recognizes npm staged publish approvals in release metadata, preventing those releases from being mistaken for lower-trust package publishes.
tope-module-cli
Advanced tools
托普朗宁基于emp2.0的项目脚手架, 一个快速上手的前端脚手架, 轻松创建host||remote模块化项目模板, 实现0配置, 快速开发
Windows系统安装
$ npm i tope-module-cli -g
Mac下安装
$ sudo npm i tope-module-cli -g
$ top-cli
# 在当前目录创建项目
$ top-cli init 模板名<template-name> .
# 在当前目录创建项目
$ top-cli i 模板名<template-name> .
$ top-cli list
$ top-cli l
$ top-cli add 模板名<template-name>
$ 模板名<template-name>
$ 模板github仓库地址,支持ssh/https格式<git-repo-address>
$ top-cli delete
$ 模板名<template-name>
执行pkg下的脚本, 自动发版并且生成changelog, travis就会执行检测后续自动发到npm.
npm run release
FAQs
tope-module-cli-tools
The npm package tope-module-cli receives a total of 2 weekly downloads. As such, tope-module-cli popularity was classified as not popular.
We found that tope-module-cli demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 5 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
pnpm 11.5 now recognizes npm staged publish approvals in release metadata, preventing those releases from being mistaken for lower-trust package publishes.

Security News
Federal audit finds NIST lacked a plan to clear the NVD backlog, wasted funds on duplicate work, and delayed use of CISA data.

Research
/Security News
A mini Shai-Hulud campaign compromised Red Hat Cloud Services npm packages to steal developer and CI/CD secrets during installation.