
Research
/Security News
Weaponizing Discord for Command and Control Across npm, PyPI, and RubyGems.org
Socket researchers uncover how threat actors weaponize Discord across the npm, PyPI, and RubyGems ecosystems to exfiltrate sensitive data.
vscode-webhint
Advanced tools
Use webhint
to improve your website - during development.
This extension runs and reports diagnostics for workspace files
based on webhint
analysis.
This extension will use the @hint/configuration-development
configuration by default. This configuration activates hints and parsers
for HTML and templating systems (JSX/TSX, Angular, etc.),
JavaScript/TypeScript, common pitfalls, and more. Refer to the package
to learn more about what is enabled.
This should be a good starting point for everyone. If you encounter any false positives please open an issue in GitHub.
If you want more control over what gets activated, you can create a
local .hintrc
file to configure webhint
. Please read the
user guide to know more about this file.
To contribute to the extension please read the CONTRIBUTING.md
file of the package.
Learn more about webhint at webhint.io. For help with output
from specific hints, see the webhint
user guide.
FAQs
Run webhint in Visual Studio Code.
The npm package vscode-webhint receives a total of 90 weekly downloads. As such, vscode-webhint popularity was classified as not popular.
We found that vscode-webhint demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 5 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
/Security News
Socket researchers uncover how threat actors weaponize Discord across the npm, PyPI, and RubyGems ecosystems to exfiltrate sensitive data.
Security News
Socket now integrates with Bun 1.3’s Security Scanner API to block risky packages at install time and enforce your organization’s policies in local dev and CI.
Research
The Socket Threat Research Team is tracking weekly intrusions into the npm registry that follow a repeatable adversarial playbook used by North Korean state-sponsored actors.