
Research
/Security News
16 Malicious Firefox Extensions Steal Cryptocurrency Wallet Credentials
Socket found 16 malicious Firefox extensions designed to steal crypto wallet recovery phrases and private keys using cloned Rabby and OKX interfaces.
webp-auto-transform
Advanced tools
Features
1、支持批量把图片转换成webp,转换之后更大支持删除
2、监听图片的新增/删除/修改/移动,从而动态转换webp
npm install webp-auto-transform
const webpAutoTransform = require("webp-auto-transform")
webpAutoTransform({
entryPath:"./assets/images",
outputPath:"./assets/images-webp",
quality:75, // 75 is default value
customList:[ // 针对个别图片做定制化
{
path:"./assets/images/1.png",
quality:100
},
{
path:"./assets/images/2.png",
quality:90
}
],
biggerWebpDelete: true, // 转换后更大的webp 图片处理方式, 删除 还是保留,默认删除
webpExistReplace: true // 如果webp文件已经存在,是否替换
detailLog:false // 是否输出转换信息
// ...其他 cwebp 支持的参数,参考https://developers.google.com/speed/webp/docs/cwebp
lossless:true,
alpha_q:9
})
quality 压缩因素,默认75,0-100entryPath 图片文件入口 ,./assets/imagesoutputPath webp 输出路径 ,./assets/images-webp,可以不填,默认生成在 entryPath 最后一个文件夹加上 “-webp”customList 针对单个图片进行参数配置,例如压缩因素 quality 为了针对某些需要更高清晰度的图片
[{
path:"./assets/images/1.png",
quality:0-100
}]
biggerWebpDelete,转换后更大的webp 图片处理方式, 删除 还是保留,默认删除,默认 ture,false 则会保留图片webpExistReplace,如果webp文件已经存在,是否替换,默认 false....more ,cwebp 支持的参数,参考 https://developers.google.com/speed/webp/docs/cwebpAs always, thanks to our amazing contributors!
Made with github-action-contributors.
FAQs
图片自动转换webp格式的node工具
The npm package webp-auto-transform receives a total of 0 weekly downloads. As such, webp-auto-transform popularity was classified as not popular.
We found that webp-auto-transform demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Socket found 16 malicious Firefox extensions designed to steal crypto wallet recovery phrases and private keys using cloned Rabby and OKX interfaces.

Product
Socket now scans VS Code extensions, giving teams early detection of risky behaviors, hidden capabilities, and supply chain threats in developer tools.

Research
/Security News
Socket uncovered two malicious VS Code themes in a GlassWorm-linked cluster with thousands of installs across VS Code Marketplace and Open VSX.