
Security News
/Research
Wallet-Draining npm Package Impersonates Nodemailer to Hijack Crypto Transactions
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
treetracker-web-map-core
Advanced tools
This is the core module for Greenstand web map application.
npm run dev
npm run cy
To open detailed log (default is WARN), set the loglevel as below:
Note: All of these actions will be automatically run when appropriate with lint-staged during the git pre-commit stage.
check for lint errors
npm run lint
check for lint errors with auto fix
npm run lint:fix
format with prettier
npm run format
sort package.json
npx sort-package-json
build project as production module
npm run pre-publish
execute the github action to release the tag.
check issue 41 here
import module in different app
import { Map } from 'treetracker-web-map-core'
map = new Map({
onLoad: () => console.log("onload"),
onClickTree: () => console.log("onClickTree"),
onFindNearestAt: () => console.log("onFindNearstAt"),
onError: () => console.log("onError"),
});
map.on("moveEnd", handleMoveEnd);
map.setFilters({
userid: 940,
})
this function will trigger rerendering of the map.
manipulate the map:
check dist/index.html
for a demo
The senerio: sometime we need to find a easy way to debug the core in the client side, for example, the web map client repo, it's installing the core by npm, so it's hard to change code in core on the client side, we can install the core by folder
locally, and get the change on the client side immediately, to do so:
git clonet [path to repo]
package.json
(this is neccessary, if don't do it, it's posssible the client will ignore/skip the installment)npm run pre-publish
(this is nessessary, the npm will fetch the bundle file rather than the src files)npm install --save [relative path to the core folder]
FAQs
This is the core module for Greenstand web map application.
The npm package treetracker-web-map-core receives a total of 11 weekly downloads. As such, treetracker-web-map-core popularity was classified as not popular.
We found that treetracker-web-map-core demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
/Research
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
Security News
This episode explores the hard problem of reachability analysis, from static analysis limits to handling dynamic languages and massive dependency trees.
Security News
/Research
Malicious Nx npm versions stole secrets and wallet info using AI CLI tools; Socket’s AI scanner detected the supply chain attack and flagged the malware.