
Security News
vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
@dhaiwat10/react-link-preview
Advanced tools
A React component that renders beautiful link previews.
Note: This package is stil in its early days. Functionality might not be as expected.
Install the package:
yarn add @dhaiwat10/react-link-preview
npm install @dhaiwat10/react-link-preview
Import and render the preview:
import { LinkPreview } from '@dhaiwat10/react-link-preview';
const Home = () => {
return <LinkPreview url='https://www.youtube.com/watch?v=dQw4w9WgXcQ' />;
};
If the component renders nothing, it means that no metadata could be scraped for the URL.
You can pass the following props to the LinkPreview
component.
url
: string
fallback?
: JSX.Element (Any valid JSX)
showLoader?
: boolean
customLoader?
: JSX.Element (Any valid JSX)
backgroundColor?
: string
primaryTextColor?
: string
secondaryTextColor?
: string
borderColor?
: string
className?
: string
width?
: string or number
height?
: string or number
margin?
: string or number
descriptionLength?
: number
borderRadius?
: string or number
imageHeight?
: string or number
textAlign?
: left, right or center
Props marked with ? are optional.
FAQs
React library to preview links.
The npm package @dhaiwat10/react-link-preview receives a total of 694 weekly downloads. As such, @dhaiwat10/react-link-preview popularity was classified as not popular.
We found that @dhaiwat10/react-link-preview demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.