
Security News
Axios Maintainer Confirms Social Engineering Attack Behind npm Compromise
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.
@favorito/fw-components
Advanced tools
FW Components is a set of components for building web applications based on jQuery and Bootstrap
Notice: FWC has included some ready to use components based on bootstrap. You should connect bootstrap css and js files to your project if you want to use them.
FWC supports plain js imports and webpack imports. You can just import it in your js file locally or from CDN.
For webpack see Installation section.
<html>
<head>
<link href="https://cdn.jsdelivr.net/npm/bootstrap@5.2.2/dist/css/bootstrap.min.css" rel="stylesheet">
</head>
<body>
<!-- App holder, can by any html element, body also -->
<div id="app">
<!-- Main page component -->
<fw-component component="page" name="startPage">
<!-- Bootstrap button component -->
<fw-component component="bs_button" class="btn btn-primary" name="button" #click="alert('Hello!')">Click me</fw-component>
</fw-component>
</div>
<!-- We include jquery in example, but it loads automatically if you use webpack -->
<script src="https://code.jquery.com/jquery-3.6.1.min.js"></script>
<!-- Bootstrap js files if needed -->
<script src="https://maxcdn.bootstrapcdn.com/bootstrap/3.3.7/js/bootstrap.min.js"></script>
<!-- FWC js file -->
<script type="module">
import AppPage from "./index.mjs";
// Or if you use webpack
// import AppPage from "@favorito/fw-components";
//Load main page component
let app = new AppPage($('#app'));
//Init app
await app.init();
</script>
</body>
npm install @favorito/fw-components
For more see demos folder
Feel free to contribute to this project. You can create issues or pull requests.
FAQs
FW Components is a set of components for building web applications based on jQuery and Bootstrap
We found that @favorito/fw-components demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.

Security News
Node.js has paused its bug bounty program after funding ended, removing payouts for vulnerability reports but keeping its security process unchanged.

Security News
The Axios compromise shows how time-dependent dependency resolution makes exposure harder to detect and contain.