leanpub, to programming
@leanpub@mastodon.social avatar

P4NR - IoT Programmer https://leanpub.com/b/p4nr-iotprogrammer by Iniationware and Joel Krec is the featured bundle on the Leanpub homepage! https://leanpub.com #NodeJs #InternetOfThings #Javascript #Typescript #SoftwareEngineering #CloudComputing

jonippolito, to Cybersecurity
@jonippolito@digipres.club avatar

A cybersecurity researcher finds that 20% of software packages recommended by GPT-4 are fake, so he builds one that 15,000 code bases already depend on, to prevent some hacker from writing a malware version.

Disaster averted in this case, but there aren't enough fingers to plug all the AI-generated holes 😬

https://it.slashdot.org/story/24/03/30/1744209/ai-hallucinated-a-dependency-so-a-cybersecurity-researcher-built-it-as-proof-of-concept-malware

joe, to bluesky

Four months ago, I created a Bluesky account to play around this the API and managed to create a simple node script to post a status to it. I wasn’t able to figure out how to get it to work with IFTTT, though. This week, I spun up a Pipedream workflow to try to post an announcement when a new blog post goes up.

https://i0.wp.com/jws.news/wp-content/uploads/2024/03/Screenshot-2024-03-27-at-7.33.56%E2%80%AFPM.png?resize=1024%2C522&ssl=1

If you wanted to replicate what I have so far, you should be able to set up your trigger like this and then the second step just looks like …

The only issue is that Bluesky requires you to specify exactly where in the string the URIs are and I don’t think that I can be bothered to figure out how to go about that at the moment. Until I figure that out, folks will need to copy and paste URLs instead of clicking on them.

https://jws.news/2024/this-blog-has-a-bluesky-account-with-a-few-issues/

thisismissem, to programming
@thisismissem@hachyderm.io avatar

So I just saw a PR for a Node.js project, where the developer had used an npm command I'm unfamiliar with.. or at least, I didn't know of:

npm clean-install

Now, I'm familiar with npm ci, but I had absolutely no idea that the alias of npm clean-install existed. I didn't even realise that's what "ci" stood for "clean install”.

I always thought npm ci meant “the npm command you wanna run in CI environments”

🤯

thisismissem, (edited )
@thisismissem@hachyderm.io avatar

Did you know that npm ci stood for npm clean-install ?

WebAxe, to webdev
@WebAxe@a11y.info avatar

Pa11y — run web accessibility tests the via command line or Node
https://github.com/pa11y/pa11y

leanpub, to devops
@leanpub@mastodon.social avatar

Learn Kubernetes & Docker - .NET Core, Java, Node.JS, PHP or Python by Arnaud Weil is free with a Leanpub Reader membership! Or you can buy it for $11.99! http://leanpub.com/k8s

jaandrle, (edited ) to programming
@jaandrle@fosstodon.org avatar

🎉 nodejsscript@v1.0.0 :nodejs:
Easy cross-platform “one–file” scripting using JavaScript.

You can use it as:

Gradually replenished thread 👇

jaandrle, (edited )
@jaandrle@fosstodon.org avatar

🎉 nodejsscript@v1.0.0 :nodejs:

…provides quick way to build cli with tab-completion support.

jaandrle,
@jaandrle@fosstodon.org avatar

🎉 nodejsscript@v1.0.0 :nodejs:

…use in terminal for example for analyze JSONs

jaandrle,
@jaandrle@fosstodon.org avatar

🎉 nodejsscript@v1.0.1 :nodejs:

just small fixes in docs and tldr functionality

jaandrle,
@jaandrle@fosstodon.org avatar

🎉 nodejsscript@v1.0.1 :nodejs:

quick evaluate JS in terminal, examining JSON (files), …

nurkiewicz, to node
@nurkiewicz@fosstodon.org avatar

From https://blog.vlt.sh/blog/the-massive-hole-in-the-npm-ecosystem

  • a package's manifest is published independently from its tarball
    manifests are never fully validated against the tarball's contents
  • the ecosystem has broadly assumed the contents of the manifest & tarball are consistent
  • any tools or insights using the public registry are susceptible to exploitation/likely inaccurate
  • bad actors can hide malware & scripts in direct or transitive dependencies that go undetected

smallcircles, to programming
@smallcircles@social.coop avatar

Ah, there's nothing like a good "the whole world has changed" dependency hell to waste a whole morning on, after being away for 2 months not updating a project.

mapache, to fediverse
@mapache@hachyderm.io avatar

A new project for the #fediverse using #activitypub, this is the deal, in case someone wants to help me, or collab in this adventure. Coding skills required but you do not need to be an expert.

Boost for reach.

I volunteer with a non-profit, and there are a few events where they issue digital badges, for now they are just images. Now, they are looking to do it more formally so we looked for commercial alternatives, like Credly, but they are vey cost prohibitive.

1/

mapache,
@mapache@hachyderm.io avatar

... and I can go on with implementations detail, but this is the deal: there is already work.

OpenBadges (https://openbadges.org/ ) is the spec. ActivityBadges is the #activitypub spec version (https://activitybadges.org/). There is a Poc in #nodejs using #activitypods.

I want to take it to the next level, and make it a fully functional system for the non-profit.

If you are interested in collab, reach out.

ecmascript_news, to javascript
@ecmascript_news@mastodon.online avatar
ecmascript_news, to javascript
@ecmascript_news@mastodon.online avatar
ecmascript_news, to javascript
@ecmascript_news@mastodon.online avatar
ecmascript_news, to javascript
@ecmascript_news@mastodon.online avatar
stvfrnzl, to node
@stvfrnzl@mastodon.online avatar

If you run into a "EACCES: permission denied" issue with , try clearing your cache. This article saved the day for me, as I'm not a terminal wizard and rather deal with something else:

https://sebhastian.com/npm-clear-cache/

calisti, to typescript
@calisti@chaos.social avatar

TailwindCSS is looking to hire a perfectionist staff software engineer, fully remote, ET - CET timezones, 275‘000 USD.

https://tailwindcss.com/careers/staff-software-engineer

JonGretar, to programming
@JonGretar@fosstodon.org avatar

This is my #GetFediHired post like all the cool kids are making.

Recently moved to Helsinki to my wife, and escaping the Icelandic winds. And looking for a job here.

Have a 20+ years #backend developer experience working with #elixirlang, #NodeJS and #Ruby.

Also have a natural science degree(Forest science) where I learned to love #rstats, #GIS and #Statistics programming.

I can promise great problem solving skills that come from experience, curiosity, ethics and an adult take on life.

ecmascript_news, to javascript
@ecmascript_news@mastodon.online avatar

Node.js: The Documentary | An origin story [63-min. video]
@nodejs
https://www.youtube.com/watch?v=LB8KwiiUGy0

rauschma, to programming
@rauschma@fosstodon.org avatar

Soon in : fs.glob() and fs.globSync()
https://github.com/nodejs/node/pull/51912

leanpub, to programming
@leanpub@mastodon.social avatar

Build Your Own Web Server From Scratch In Node.JS: Learn network programming, HTTP, and WebSocket by coding a Web Server https://leanpub.com/byo_web_server by build-your-own.org is the featured book on the Leanpub homepage! https://leanpub.com

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • GTA5RPClips
  • thenastyranch
  • tacticalgear
  • ethstaker
  • InstantRegret
  • DreamBathrooms
  • ngwrru68w68
  • magazineikmin
  • Youngstown
  • mdbf
  • khanakhh
  • slotface
  • rosin
  • provamag3
  • kavyap
  • everett
  • cisconetworking
  • Durango
  • modclub
  • osvaldo12
  • tester
  • Leos
  • cubers
  • normalnudes
  • megavids
  • anitta
  • lostlight
  • All magazines