Security News
Research
Data Theft Repackaged: A Case Study in Malicious Wrapper Packages on npm
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
Hikaru allows you to smoothly move between Kubernetes YAML, Python objects, and Python source, in any direction
.. |travis| image:: https://travis-ci.com/haxsaw/hikaru.svg?branch=dev :target: https://app.travis-ci.com/github/haxsaw/hikaru
.. |license| image:: https://img.shields.io/github/license/haxsaw/hikaru :alt: GitHub license :target: https://github.com/haxsaw/hikaru/blob/main/LICENSE
.. |versions| image:: https://img.shields.io/pypi/pyversions/hikaru :alt: PyPI - Python Version
.. |coverage| image:: https://codecov.io/gh/haxsaw/hikaru/branch/dev/graph/badge.svg?token=QOFGNVHGNP :target: https://codecov.io/gh/haxsaw/hikaru
.. |logo| image:: hikaru-model-28-logo.png :alt: Hikaru
|logo|
Version 1.1.0
|travis| |license| |versions| |coverage|
Try it: see Hikaru convert your K8s YAML <http://www.incisivetech.co.uk/try-hikaru.html>
_
Release notes <https://github.com/haxsaw/hikaru/blob/main/release_notes.rst>
_
Full documentation at Read the Docs <https://hikaru.readthedocs.io/en/latest/index.html>
_
Hikaru is a collection of tools that allow you to work with Kubernetes resources from within Python in a variety of ways:
This package provides model classes to create resources through the Kubernetes Python client version 28.x.
It depends on the
hikaru-core
package which will be installed automatically when this packages is installed. This package
will work with any version of the Kubernetes Python client >= 28.x; if you need to constrain which release
is installed then you should establish your own requirement limits on the Kubernetes Python client package.
About
Hikaru is Mr. Sulu’s first name, a famed fictional helmsman.
FAQs
Hikaru allows you to smoothly move between Kubernetes YAML, Python objects, and Python source, in any direction
We found that hikaru-model-28 demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Research
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
Research
Security News
Attackers used a malicious npm package typosquatting a popular ESLint plugin to steal sensitive data, execute commands, and exploit developer systems.
Security News
The Ultralytics' PyPI Package was compromised four times in one weekend through GitHub Actions cache poisoning and failure to rotate previously compromised API tokens.