
Security News
vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
th2-grpc-generator-template
Advanced tools
This is the template project for creating custom gRPC libraries. It contains an example of proto messages and services.
The tool generates code from .proto
files and uploads built packages (.proto
files and generated code) to the specified repositories.
src/main/proto
directory (remove other files and directories if they exist)..proto
files in the created directory. Pay attention to both the package
specifier and to the import
statements.release_version
and vcs_url
properties in gradle.properties
file.rootProject.name
variable in settings.gradle
file. This will be the name of the Java package.package_info.json
file in order to specify its name and its version for Python package (create the file in case it's absent).setup.py
in setup
function invocation such as: author
, author_email
, url
. Do not edit the other's parameters.README.md
file according to the new project.Note that the name of the created directory under src/main/proto
directory is used in Python (it's a package name).
gradle.properties
file.package_info.json
file.If you wish to manually create and publish a package for Java, run the following command:
gradle --no-daemon clean build publish artifactoryPublish \
-Purl=${URL} \
-Puser=${USER} \
-Ppassword=${PASSWORD}
URL
, USER
and PASSWORD
are parameters for publishing.
If you wish to manually create and publish a package for Python:
Gradle
:
gradle --no-daemon clean generateProto
You can find the generated files by following path: src/gen/main/services/python
.proto
files and publish everything using twine
:
pip install -r requirements.txt
pip install twine
python setup.py generate
python setup.py sdist
twine upload --repository-url ${PYPI_REPOSITORY_URL} --username ${PYPI_USER} --password ${PYPI_PASSWORD} dist/*
PYPI_REPOSITORY_URL
, PYPI_USER
and PYPI_PASSWORD
are parameters for publishing.FAQs
th2_grpc_generator_template
We found that th2-grpc-generator-template demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.