
Security News
Attackers Are Hunting High-Impact Node.js Maintainers in a Coordinated Social Engineering Campaign
Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.
@deptdk/liquidjs-framework-vite
Advanced tools
Storybook for LiquidJS and Vite: View LiquidJS Components in isolation with Hot Reloading.
Storybook for LiquidJS is a UI development environment for your LiquidJS Components. With it, you can visualize different states of your Components and develop them interactively.
Storybook runs outside of your app. So you can develop UI components in isolation without worrying about app specific dependencies and requirements.
cd my-app
npx storybook@latest init --type html
Remove HTML framework/renderer and install LiquidJS framework/renderer:
npm remove @storybook/html @storybook/html-webpack5
npm install @deptdk/liquidjs-framework-webpack5 --save-dev
…or if you wanna use Vite
npm remove @storybook/html @storybook/html-webpack5
npm install @deptdk/liquidjs-framework-vite --save-dev
Replace .storybook/main.js with the below, setting up the correct paths as necessary.
module.exports = {
// ...
stories: ['RELATIVE_PATH_TO_STORIES'],
framework: '@deptdk/liquidjs-framework-webpack5', // or '@deptdk/liquidjs-framework-vite'
};
Replace .storybook/preview.js with:
export const parameters = {
liquidjs: {
//These options are passed to LiquidJS
},
};
Read more about LiquidJS options in the LiquidJS Docs
Storybook also comes with a lot of addons and a great API to customize as you wish. You can also build a static version of your Storybook and deploy it anywhere you want.
FAQs
Storybook for LiquidJS and Vite: View LiquidJS Components in isolation with Hot Reloading.
The npm package @deptdk/liquidjs-framework-vite receives a total of 173 weekly downloads. As such, @deptdk/liquidjs-framework-vite popularity was classified as not popular.
We found that @deptdk/liquidjs-framework-vite demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.

Security News
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.

Security News
Node.js has paused its bug bounty program after funding ended, removing payouts for vulnerability reports but keeping its security process unchanged.