
Research
Security News
Malicious npm Package Wipes Codebases with Remote Trigger
A malicious npm typosquat uses remote commands to silently delete entire project directories after a single mistyped install.
tt-ide-cli
Advanced tools
tma cli is the standard tooling for micro app development.
npm i tt-ide-cli
Usage: create <app-name>
create a new project powered by libra cli in current path
Options:
-f, --force Overwrite target directory if it exists
-h, --help Output usage information
Usage: open <project-path>
open target project by path
Usage: login [options]
login to the developer platform
Options:
-m, --mobile Login by mobile
-e, --email Login by email
-h, --help Output usage information
-p, --proxy Login with proxy
Usage: login-e [email] [password]
Login to the developer platform by E-mail
Options:
-p, --proxy Login with proxy
Usage: preview [options] [entry]
preview project by remote
Options:
-c, --copy Copy remote url to clipboard
-f, --force Preview project without local cache
-s, --small Use small QR Code, but some environments not working
-h, --help Output usage information
-p, --proxy Preview with proxy
Usage: upload [options] [entry]
upload project to the developer platform
Options:
-v, --app-version <version> App version (eg: [major].[minor].[patch])
-c, --app-changelog <log> Changelog for this version
-h, --help Output usage information
-p, --proxy Upload with proxy
FAQs
Command line interface for micro app development
We found that tt-ide-cli demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
A malicious npm typosquat uses remote commands to silently delete entire project directories after a single mistyped install.
Research
Security News
Malicious PyPI package semantic-types steals Solana private keys via transitive dependency installs using monkey patching and blockchain exfiltration.
Security News
New CNA status enables OpenJS Foundation to assign CVEs for security vulnerabilities in projects like ESLint, Fastify, Electron, and others, while leaving disclosure responsibility with individual maintainers.