
Security News
OWASP 2025 Top 10 Adds Software Supply Chain Failures, Ranked Top Community Concern
OWASP’s 2025 Top 10 introduces Software Supply Chain Failures as a new category, reflecting rising concern over dependency and build system risks.
@elyra/canvas
Advanced tools
Elyra Canvas is an open-source library, which provides React objects that enable applications to quickly create a fully functional flow editor. Users can easily create and edit the flows of linked nodes by using the flow editor.
Elyra Canvas in action in the SPSS Modeler UI, the flagship component of IBM Watsonx
The elyra-ai/canvas repo contains three main modules: Common Canvas, Common Properties and Test Harness. For more details, see this documentation.
The Elyra Canvas package delivers two decoupled React objects: Common Canvas and Common Properties. For more details, see this documentation.
The "Tiny App" is a demonstration application that is produced with only a few lines of code. You can use it to try these features of Elyra Canvas:
Elyra Canvas requires react, react-dom, react-intl, and react-redux libraries to be installed. For versions requirements, see peerDependencies in package.json.
To install @elyra/canvas in your project, run the following command using npm:
npm install @elyra/canvas --save-dev
For more details about installation and getting started in Elyra Canvas, check out:
If you're looking for @elyra/canvas documentation, check out:
This package uses IBM Telemetry to collect de-identified and anonymized metrics data. By installing this package as a dependency you are agreeing to telemetry collection. To opt out, see Opting out of IBM Telemetry data collection. For more information on the data being collected, please see the IBM Telemetry documentation.
FAQs
Elyra common-canvas
The npm package @elyra/canvas receives a total of 1,024 weekly downloads. As such, @elyra/canvas popularity was classified as popular.
We found that @elyra/canvas demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 8 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
OWASP’s 2025 Top 10 introduces Software Supply Chain Failures as a new category, reflecting rising concern over dependency and build system risks.

Research
/Security News
Socket researchers discovered nine malicious NuGet packages that use time-delayed payloads to crash applications and corrupt industrial control systems.

Security News
Socket CTO Ahmad Nassri discusses why supply chain attacks now target developer machines and what AI means for the future of enterprise security.