Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
zipkin-javascript-opentracing
Advanced tools
Run npm install --save zipkin-javascript-opentracing
to install the library.
For usage instructions, please see the examples in the examples/
directory. There is a basic vanilly
javascript
example that shows how to use the tracer in the context of a single express
server and there is an advanced vanilla
javascript
example that shows how multiple services (express API and frontend) might
interact and share a tracing context.
We currently only support HTTP Headers. If you need your own mechanism, feel
free to do a PR. Also we assume that you only inject the HTTP Headers once,
otherwise we will send multiple ClientSend
annotations for you.
Also you can only finish spans which were not extracted. If you like this behaviour to be different, please open an issue.
They are currently not supported, feel free to do a PR.
FollowsFrom is not supported by openTracing, as far as I understand.
We need to know if this is a server or client to set the right annotations. Therefore we need the kind attribute to be set.
All examples need to run zipkin on "localhost:9411"
. This is best achieved by
using docker:
docker run -d -p 9411:9411 openzipkin/zipkin
To see how to use this library with only one service see
examples/vanillajs/basic
. You can run the example with npm run example:basic
.
In order to see how different services may pick up spans and extend them, please
see the advanced example at examples/vaniallajs/advanced
. You can run the
example with npm run example:advanced
.
FAQs
An opentracing implementation for zipkin
The npm package zipkin-javascript-opentracing receives a total of 2,031 weekly downloads. As such, zipkin-javascript-opentracing popularity was classified as popular.
We found that zipkin-javascript-opentracing demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.