Research
Security News
Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
@catastrophee/models
Advanced tools
npm install -s @catastrophee/models
or
yarn add @catastrophee/models
Catastrophee models have mobx as a dependency, mobx should be installed automatically when you install @catastrophee/models, but in case it doesn't, please install mobx.
npm install --save mobx
You can use Catastrophee models in two different ways.
*Browser dependant models can attach event listeners or need the window object, when you are using node, most likely those are not going to be available
Simply import the model of your choice and use it as you would any other model.
In order for your component to render with the lastet synchronized changes, it needs to be active listening when data changes on your model. In order for that to happen you need to wrap your component in an observer. The observer helper is available from 'mobx-react' (note: not mobx)
npm install --save mobx-react
On your component, import mobx-react and wrap the component on a observer
import { observer } from 'mobx-react';
@observer
export class MyComponent extends React.Component {
...
}
import { observer } from 'mobx-react';
export const MyComponent = observer(({ props }) => {
...
})
FAQs
Mobx models for the web
We found that @catastrophee/models demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Security News
MITRE's 2024 CWE Top 25 highlights critical software vulnerabilities like XSS, SQL Injection, and CSRF, reflecting shifts due to a refined ranking methodology.
Security News
In this segment of the Risky Business podcast, Feross Aboukhadijeh and Patrick Gray discuss the challenges of tracking malware discovered in open source softare.