
Security News
PodRocket Podcast: Inside the Recent npm Supply Chain Attacks
Socket CEO Feross Aboukhadijeh discusses the recent npm supply chain attacks on PodRocket, covering novel attack vectors and how developers can protect themselves.
@fw-components/trackers
Advanced tools
A utility that traverses the DOM and registers listeners to elements (even those present within shadowDOMs) from a provided list of events that are to be tracked.
The consumer can either provide a store configuration and the events will be fetched and parsed from the store or an array of events to be tracked.
Schema of an event-config:
{
"jsPath": "document.querySelector...",
"location": "/dashboard", // glob pattern of the url where the target-element is to be tracked
"title": "Clicked at dashboard edit-button",
"event": "click" // type of event | All js events are supported
}
const tracker = new Trackers({
store: {
type: "notion",
context: {
url: "URL_TO_RETRIEVE_NOTION_DB",
pageId: "<<PAGE_ID>>",
},
},
track: yourTrackingMethod,
debug: true,
});
tracker.initialize();
tracking multiple targets is also supported. Use :nth-child(+)
identifier to highlight elements whose multiple instances are to be tracked
Supported selector
document.querySelector("div > div.main-content > div.page > route-page > request-grid:nth-child(+)")
FAQs
Usage trackers for web components
The npm package @fw-components/trackers receives a total of 74 weekly downloads. As such, @fw-components/trackers popularity was classified as not popular.
We found that @fw-components/trackers demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Socket CEO Feross Aboukhadijeh discusses the recent npm supply chain attacks on PodRocket, covering novel attack vectors and how developers can protect themselves.
Security News
Maintainers back GitHub’s npm security overhaul but raise concerns about CI/CD workflows, enterprise support, and token management.
Product
Socket Firewall is a free tool that blocks malicious packages at install time, giving developers proactive protection against rising supply chain attacks.