
Security News
vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Aliot-py is the python implementation of the Aliot library, an IOT library made to work with the ALIVEIoT ecosystem (see https://alivecode.ca/iot)
Before everything else, aliot is a fancy websocket written in python that aims to facilitate iot focused exchanges between a server and a client
py -m venv venv
pip install ./$FOLDER
Create a function that takes some parameters
# my function will take money ($) and give cookies for every 2$ received
def give_cookies_for_money(money: int):
return {"cookies": money // 2}
Register your function as a protocol by decorating it with the on_recv
decorator in your ObjConnecte that you
created for your project and pass the id of your protocol in the argument of the decorator
# here, I chose that my function will be protocol 34
@my_iot.on_recv(action_id=34)
def give_cookies_for_money(money: int):
return {"cookies": money // 2}
As of now, my function give_cookies_for_money
doesn't return anything to the server, if I want to send back my
cookies, I have to ways:
my_iot.send()
@my_iot.on_recv(action_id=34)
def give_cookies_for_money(money: int):
my_iot.send({"cookies": money // 2})
send_result
to True in the decorator@my_iot.on_recv(action_id=34, send_result=True)
def give_cookies_for_money(money: int):
return {"cookies": money // 2}
run()
is called)FAQs
Aliot-py is the python implementation of the Aliot library, an IOT library made to work with the ALIVEIoT ecosystem (see https://alivecode.ca/iot)
We found that aliot-py demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.