
Research
/Security News
9 Malicious NuGet Packages Deliver Time-Delayed Destructive Payloads
Socket researchers discovered nine malicious NuGet packages that use time-delayed payloads to crash applications and corrupt industrial control systems.
@ibm/plex-sans-tc
Advanced tools
Please download the latest zip files from our releases page for installation.
This project contains the following for web development:
We only include .woff2 and .woff files due to NPM package size limitation.
Installation with Node.js®:
npm install @ibm/plex-sans-tc
Manually installing the files for web development can be done by downloading the latest web zip from our releases page.
Developers using the CSS files should keep the directory structure as is, so the font files will be found. If you’re importing the SCSS files, you can set the path of the font files by declaring $font-prefix: 'font-path-prefix' inside the @use. For example:
@use '@ibm/plex-sans-tc/scss' as PlexSansTC with (
$font-prefix: 'font-path'
);
@include PlexSansTC.all();
We provide two ways of importing weights into your project. Using PlexSansTC.all() will import all available weights and PlexSansTC.default() will import only light, regular and semibold weight. You can also disable unwanted weights inside the @use. For example:
// Disable weights
@use '@ibm/plex-sans-tc/scss' as PlexSansTC with (
$font-weights: (
bold: false,
extralight: false,
light: false,
medium: false,
regular: false,
semibold: false,
text: false,
thin: false,
)
);
@include PlexSansTC.all();
IBM Plex Sans Chinese TC typeface weights map:
| Weight | Enabled by default with | PlexSansTC.all() | PlexSansTC.default() |
|---|---|---|---|
| bold | ✅ | ✅ | |
| extralight | ✅ | ❌ | |
| light | ✅ | ❌ | |
| medium | ✅ | ❌ | |
| regular | ✅ | ✅ | |
| semibold | ✅ | ✅ | |
| text | ✅ | ❌ | |
| thin | ✅ | ❌ |
Below are the font-family rules for the family:
font-family: 'IBM Plex Sans TC';
To build binary font files from .vfb sources you need FontLab Studio 5. A Python script called IBM Plex export FDK files.py is necessary to export the proper files from FontLab. To run this script you’ll need the RoboFab library. Also, you’ll need to have the Adobe Font Development Kit for OpenType (AFDKO) installed.
From FontLab, run IBM Plex export FDK files.py and choose a directory with IBM Plex .vfb source files. The script will create a new directory called fdk in which subdirectories are created for every font. The script will export files necessary for AFDKO in those subdirectories.
Subsequently, OpenType Fonts (OTFs) or TrueType Fonts (TTFs) can be generated from the command line using makeotf, which is part of the AFDKO toolset. Information and usage instructions can be found by executing makeotf -h.
This package uses IBM Telemetry to collect de-identified and anonymized metrics data. By installing this package as a dependency you are agreeing to telemetry collection. To opt out, see Opting out of IBM Telemetry data collection. For more information on the data being collected, please see the IBM Telemetry documentation.
FAQs
The package of IBM’s typeface, IBM Plex Sans TC
The npm package @ibm/plex-sans-tc receives a total of 8 weekly downloads. As such, @ibm/plex-sans-tc popularity was classified as not popular.
We found that @ibm/plex-sans-tc demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
Socket researchers discovered nine malicious NuGet packages that use time-delayed payloads to crash applications and corrupt industrial control systems.

Security News
Socket CTO Ahmad Nassri discusses why supply chain attacks now target developer machines and what AI means for the future of enterprise security.

Security News
Learn the essential steps every developer should take to stay secure on npm and reduce exposure to supply chain attacks.