
Research
Namastex.ai npm Packages Hit with TeamPCP-Style CanisterWorm Malware
Malicious Namastex.ai npm packages appear to replicate TeamPCP-style Canister Worm tradecraft, including exfiltration and self-propagation.
@arcgis/coding-components-react
Advanced tools
A set of React components that wrap ArcGIS coding components
The ArcGIS Maps SDK for JavaScript provides a suite of ready-to-use UI components that simplify the process of creating GIS web applications. Currently, this package only includes an Arcade expression code editor.
Want to get started immediately? See Get started or try out the sample applications for a variety of popular frameworks, module bundlers, and TypeScript.
WARNING: Coding Components React is deprecated in v5.0.0 and will be removed in v6.0.0.
The @arcgis/coding-components-react package was originally developed for use with React 18 where wrappers were necessary to use custom elements. With React 19's custom element support, these wrappers are no longer needed.
Consider upgrading to React 19+ and using @arcgis/coding-components directly. Check out the documentation to get started.
An example is available from the 4.31 release in the jsapi-resources repo.
This package is licensed under the terms described in the LICENSE.md file, located in the root of the package, and at https://js.arcgis.com/5.0/LICENSE.txt.
For third party notices, see https://js.arcgis.com/5.0/third-party-notices.txt.
FAQs
A set of React components that wrap ArcGIS coding components
The npm package @arcgis/coding-components-react receives a total of 2,204 weekly downloads. As such, @arcgis/coding-components-react popularity was classified as popular.
We found that @arcgis/coding-components-react demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 5 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
Malicious Namastex.ai npm packages appear to replicate TeamPCP-style Canister Worm tradecraft, including exfiltration and self-propagation.

Product
Explore exportable charts for vulnerabilities, dependencies, and usage with Reports, Socket’s new extensible reporting framework.

Product
Socket for Jira lets teams turn alerts into Jira tickets with manual creation, automated ticketing rules, and two-way sync.