Security News
pnpm 10.0.0 Blocks Lifecycle Scripts by Default
pnpm 10 blocks lifecycle scripts by default to improve security, addressing supply chain attack risks but sparking debate over compatibility and workflow changes.
@atlaskit/navigation-next
Advanced tools
Atlassian is moving to a new navigation experience, which includes horizontal global navigation, and re-built navigation components to replace navigation-next.
For a guide on how to upgrade from navigation-next
to the new navigation components, follow this guide on the atlaskit website.
These are entrypoints for specific components to be used carefully by the consumers. If you're using one of these entrypoints we are assuming you know what you are doing. So it means that code-splitting and tree-shaking should be done on the consumer/product side.
import LayoutManagerWithViewController from '@atlaskit/navigation-next/LayoutManagerWithViewController';
atlaskit/navigation-next/LayoutManagerWithViewController
atlaskit/navigation-next/ItemsRenderer
atlaskit/navigation-next/SkeletonContainerView
atlaskit/navigation-next/NavigationProvider
atlaskit/navigation-next/AsyncLayoutManagerWithViewController
atlaskit/navigation-next/GlobalNavigationSkeleton
atlaskit/navigation-next/view-controller
atlaskit/navigation-next/ui-controller
FAQs
The Atlassian navigation component.
We found that @atlaskit/navigation-next demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
pnpm 10 blocks lifecycle scripts by default to improve security, addressing supply chain attack risks but sparking debate over compatibility and workflow changes.
Product
Socket now supports uv.lock files to ensure consistent, secure dependency resolution for Python projects and enhance supply chain security.
Research
Security News
Socket researchers have discovered multiple malicious npm packages targeting Solana private keys, abusing Gmail to exfiltrate the data and drain Solana wallets.