
Product
Socket MCP Adds Org Alerts, Threat Feed Review, and Package Inspection
Socket MCP now lets AI assistants review org alerts, investigate threats using the Socket threat feed, and inspect package files in addition to dependency scoring.
@holokit/icons
Advanced tools
This package contains a collection of React components and other files for displaying icons.
This directory is split into a few sub-directories:
resourcessrc
generatedIconThe resources directory contains the icons.json file. This file is a record of the icons that we currently have, and is used to build the icon source. The src/generated directory contains the artifacts of the icon build process, and the src/Icon directory contains the Icon React component itself, as well as the associated styles and types.
Icons an be added by adding a record to the icons.json file, and making sure to include the correct svgs in the top level resources/icons directory. Inside of this directory, there are subdirectories for each of the sizes. Design will provide svgs at each size.
Optional key values in icons.json include only and excludes. These exist to selectively designate what size we have for this icon.
FAQs
Components, fonts, icons, and css files for creating and displaying icons.
The npm package @holokit/icons receives a total of 4 weekly downloads. As such, @holokit/icons popularity was classified as not popular.
We found that @holokit/icons demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 3 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Product
Socket MCP now lets AI assistants review org alerts, investigate threats using the Socket threat feed, and inspect package files in addition to dependency scoring.

Product
Socket Firewall blocks malicious VS Code and Open VSX extensions before install, protecting developers from compromised editor marketplaces.

Research
More than 140 Mastra npm packages were compromised in a supply chain attack that used a typosquatted dependency to deliver a cross-platform infostealer during installation.