Security News
pnpm 10.0.0 Blocks Lifecycle Scripts by Default
pnpm 10 blocks lifecycle scripts by default to improve security, addressing supply chain attack risks but sparking debate over compatibility and workflow changes.
ZMA command line utility makes easier to create ZMA apps. Since ZMA v4 release, CLI the most recommended way to start ZMA app development.
Then install zma-cli (may require "sudo"):
$ npm install -g zma-cli
To create ZMA app, run the following command in the directory where you want to create app:
$ zma create
Program will prompt for few questions about framework and template you want to start with.
Run the following command in the directory where you want to create app:
$ zma create --ui
It will launch UI where you will be able to configure the project. By default it launches server on localhost:3001
address. If you want to change the port then use --port <n>
argument:
$ zma create --ui --port 8080
In created project there is an assets-src
directory. It contains required icons and splash screens source images. To generate your own icons and splash screen images, you will need to replace all assets in this directory with your own images (pay attention to image size and format), and run the following command in the project directory:
$ zma assets
That is all, script will generate all required sizes of icons and splash screens and place them automatically where they need to be.
Run the following command in the directory with ZMA project:
$ zma assets --ui
It will launch UI where you will be able to change icons and splash screens. By default it launches server on localhost:3001
address. If you want to change the port then use --port <n>
argument:
$ zma assets --ui --port 8080
FAQs
ZMA command line utility (CLI)
We found that zma-cli demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
pnpm 10 blocks lifecycle scripts by default to improve security, addressing supply chain attack risks but sparking debate over compatibility and workflow changes.
Product
Socket now supports uv.lock files to ensure consistent, secure dependency resolution for Python projects and enhance supply chain security.
Research
Security News
Socket researchers have discovered multiple malicious npm packages targeting Solana private keys, abusing Gmail to exfiltrate the data and drain Solana wallets.