Security News
PyPI’s New Archival Feature Closes a Major Security Gap
PyPI now allows maintainers to archive projects, improving security and helping users make informed decisions about their dependencies.
So Literate Coffeescript is a cool idea, but why isn't there a standard JS or compile-to-JS version? JS Programmers want some love too! This is my effort to rectify this inequity.
To use in-browser, include the marked source (and optionally the coffee-script source if desired):
<script src="https://raw.github.com/chjj/marked/master/lib/marked.js"></script>
<script src="http://coffeescript.org/extras/coffee-script.js"></script>
In tooling, npm install -g voc
and run against your markdown file:
$ voc yourfile.md
VOC searches for markdown code blocks. Using GFM guards (triple backticks), hints after the opening backticks are used to direct content.
For example, "```>foo.bar" will redirect content in the codeblock to
foo.bar
.
If a preprocessor is available, VOC can be told to use it! This is needed for certain magic cases like Makefiles (which require explicit tabs).
VOC exposes two utility functions:
VOC.run(src)
will process the specified string source.
VOC.add(lang, cb)
will assign the handler for the language. If lang
is an
array, the handler will be assigned for each language in the array.
The language handlers will be called with one argument: the actual source to be processed. Consecutive blocks with the same language are concatenated.
See the enclosed voc.md for more information.
FAQs
Generalized Literate Programming Framework
The npm package voc receives a total of 115,969 weekly downloads. As such, voc popularity was classified as popular.
We found that voc demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
PyPI now allows maintainers to archive projects, improving security and helping users make informed decisions about their dependencies.
Research
Security News
Malicious npm package postcss-optimizer delivers BeaverTail malware, targeting developer systems; similarities to past campaigns suggest a North Korean connection.
Security News
CISA's KEV data is now on GitHub, offering easier access, API integration, commit history tracking, and automated updates for security teams and researchers.