Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
types-ramda
Advanced tools
types-ramda
Requires at least typescript@5
@types/ramda
has been community driven for a long time. It is however very incomplete. The goal is this library is to improve the overall types for ramda by moving ownership in-house
The end-goal is to eventually migration this repo into the core ramda repo, but for now, so we can independently update and release new typings,
this repo will house the types, be publish to npm
where @types/ramda
will re-export what is here
To get a sense of what migration back into the core repo will look like, check out ts
branch that is there now.
Please see the Github Issues page which is being used to define work left to do
types-ramda
is not intended to be used directly!
@types/ramda
should continued to be used. @types/ramda
re-exports what is defined here. The type definitions were moved into those repo for 2 reasons
ramda
repoWe cannot lock the semver to be the same as ramda
's since we plan on doing multiple releases to this library to progressively update the types
until they are all correct. We will keep up with minor releases starting at 0.29.0
up until 1.0.0
.
@types/ramda
will be updated to latest of this package after every release
FAQs
Dedicated types library for ramda
The npm package types-ramda receives a total of 440,138 weekly downloads. As such, types-ramda popularity was classified as popular.
We found that types-ramda demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.