Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Function.prototype.bind replacement that provides an `unbounded` hidden property on the returned bounded function, that contains the original unbounded function
Function.prototype.bind replacement that provides an unbounded
hidden property on the returned bounded function, that contains the original unbounded function
This package functions like Function.prototype.bind
, however it exposes a hidden unbounded
property on the returned bounded function that contains the original unbounded function.
This is very useful as it means you can do:
(fn.unbounded || fn).length
to always get the correct amount of arguments(fn.unbounded || fn).toString()
to always get the source code of any function instead of getting function () { [native code] }
for bounded functionsfn.bind(firstContext).unbounded.bind(secondContext)
to have fn
actually bind to the second context, as fn.bind(firstContext).bind(secondContext)
only binds to the first contextTo have all bounded functions have the unbounded
property, use patch
:
import { patch } from 'unbounded'
patch()
const context = { hello: 'world' }
function myFunction() {
return this.hello
}
import { equal } from 'assert'
const boundedFunction = myFunction.bind(context)
equal(boundedFunction(), context.hello, 'context was correct')
equal(boundedFunction.unbounded, myFunction, 'unbounded was correct')
To have only specific functions have the unbounded
property, use binder
:
import { equal } from 'assert'
import { binder } from 'unbounded'
const context = { hello: 'world' }
function myFunction() {
return this.hello
}
import { equal } from 'assert'
const boundedFunction = binder.call(myFunction, context)
equal(boundedFunction(), context.hello, 'context was correct')
equal(boundedFunction.unbounded, myFunction, 'unbounded was correct')
npm install --save unbounded
import * as pkg from ('unbounded')
const pkg = require('unbounded')
import * as pkg from 'https://unpkg.com/unbounded@^6.3.1/edition-deno/index.ts'
<script type="module">
import * as pkg from '//cdn.skypack.dev/unbounded@^6.3.1'
</script>
<script type="module">
import * as pkg from '//unpkg.com/unbounded@^6.3.1'
</script>
<script type="module">
import * as pkg from '//dev.jspm.io/unbounded@6.3.1'
</script>
This package is published with the following editions:
unbounded
aliases unbounded/index.cjs
which uses the Editions Autoloader to automatically select the correct edition for the consumer's environmentunbounded/source/index.ts
is TypeScript source code with Import for modulesunbounded/edition-browsers/index.js
is TypeScript compiled against ES2022 for web browsers with Import for modulesunbounded/edition-es2022/index.js
is TypeScript compiled against ES2022 for Node.js 6 || 8 || 10 || 12 || 14 || 16 || 18 || 20 || 21 with Require for modulesunbounded/edition-es5/index.js
is TypeScript compiled against ES5 for Node.js 4 || 6 || 8 || 10 || 12 || 14 || 16 || 18 || 20 || 21 with Require for modulesunbounded/edition-es2022-esm/index.js
is TypeScript compiled against ES2022 for Node.js 12 || 14 || 16 || 18 || 20 || 21 with Import for modulesunbounded/edition-types/index.d.ts
is TypeScript compiled Types with Import for modulesunbounded/edition-deno/index.ts
is TypeScript source code made to be compatible with DenoDiscover the release history by heading on over to the HISTORY.md
file.
Discover how to contribute via the CONTRIBUTING.md
file.
Unless stated otherwise all works are:
and licensed under:
FAQs
Function.prototype.bind replacement that provides an `unbounded` hidden property on the returned bounded function, that contains the original unbounded function
The npm package unbounded receives a total of 13,333 weekly downloads. As such, unbounded popularity was classified as popular.
We found that unbounded demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.