Source i (link to git-repo or to original if based on someone elses unmodified work):

Add the source-code for this project on opencode.net

Original
2
Become a Fan
5.0

Description:
Runner based on pastel for color manipulation.

Requirements
- Pastel: https://github.com/sharkdp/pastel
- Imagemagick

Usage
- Type a color in any format to get informations.
- Apply commands on colors (pastel help for the complete command list)
- Get random/distinct colors in any format. Ex: random rgb
- Get gradients in any format. Ex: gradient white gray rgb
- Press Enter to copy the output
Last changelog:

Fix installer

Fix/improve installer and uninstall scripts:
* Check deps before proceeding to installation
* Fix service not running on startup


Ratings & Comments

3 Comments

nathanu

Doesn't seem to be working. After install, it does not appear in the list of krunner search plugins.

leo5sk

I am getting this message on npm audit: # npm audit report minimist <=1.2.5 Severity: high Prototype Pollution in minimist - https://github.com/advisories/GHSA-vh95-rmgr-6w4m Prototype Pollution in minimist - https://github.com/advisories/GHSA-xvch-5gv4-984h No fix available node_modules/minimist optimist >=0.6.0 Depends on vulnerable versions of minimist node_modules/optimist dbus-native * Depends on vulnerable versions of optimist Depends on vulnerable versions of put node_modules/dbus-native put * Sensitive Data Exposure in put - https://github.com/advisories/GHSA-v6gv-fg46-h89j No fix available node_modules/put dbus-native * Depends on vulnerable versions of optimist Depends on vulnerable versions of put node_modules/dbus-native 4 vulnerabilities (1 low, 2 moderate, 1 high) Some issues need review, and may require choosing a different dependency. Not too well versed with it but is it okay to use it?

belka

Hi thanks for reporting, After a bit of research I can confirm the presence of vulnerabilities in dependencies owned by dbus-native node library However, while there are in fact critical, there doesn't seem to be any real danger using it in the context of KRunner since it's executed locally and there aren't risks of a network attack vector, The affected environments are either application servers or web servers which is not the case here. Furthermore, the codebase doesn't comply to that vulnerability requirements (Evaluating a command or checking the privileges of a user) You can read more about it here: https://security.snyk.io/vuln/SNYK-JS-MINIMIST-559764 This issue was also addressed in the dbus-native repo, but so far developers have been using this library extensively https://github.com/sidorares/dbus-native/issues/271 https://www.npmjs.com/package/dbus-native One safe solution would be to port this to a Python package, but I don't have the time right now nor the motivation so I'll create a repo and let people port it if they want to.

Pling
0 Affiliates
Details
license GPLv3
version 1.0.1
updated
added
downloads 24h 3
mediaviews 24h 0
pageviews 24h 0

More App Runners from belka:

Joplin KRunner
belka
last update date: 3 years ago

Score 5.0

Other App Runners:

PidginRunner
todd1215
last update date: 11 years ago

Score 5.7

PublicTransport-Runner
fpuelz
last update date: 14 years ago

Score 6.8

Qalculator Runner
siefkenj
last update date: 16 years ago

Score 5.0

Choqok KRunner Dent
harriseldon_double
last update date: 14 years ago

Score 7.5

KooRunner
cirkus
last update date: 14 years ago

Score 5.0

Browse Chromium History
gcala
last update date: 14 years ago

Score 5.7



System Tags