
Company News
Socket Joins New OpenJS Program to Fund Node.js Security Work
Socket is joining the OpenJS Security Stewardship Program to fund Node.js vulnerability research, maintainer remediation, and security releases.
@jesscss/css-parser
Advanced tools
The CSS package exposes Parseman CSS grammar, canonical AST v2 parsing, and explicit CST parsing:
@jesscss/css-parser — parse() to canonical AST v2 Stylesheet, grammar, and CST types.@jesscss/css-parser/cst — CST parsing entry.@jesscss/css-parser/grammar — compiled CSS grammar.The CST and grammar entries expose Parseman types and grammar values. They use
the package's parseman peer; install Parseman when consuming either entry.
The former ./jess Chevrotain/functional-builder surface is deleted. CSS has
no legacy tree parser or construction host. Its public parser constructs the
canonical AST directly through Parseman reductions; the named CST APIs remain
for language-service/document consumers only.
FAQs
Jess CSS base parser
The npm package @jesscss/css-parser receives a total of 242 weekly downloads. As such, @jesscss/css-parser popularity was classified as not popular.
We found that @jesscss/css-parser demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Company News
Socket is joining the OpenJS Security Stewardship Program to fund Node.js vulnerability research, maintainer remediation, and security releases.

Security News
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.

Research
/Security News
A malicious Firefox extension fetches its payload after installation to evade detection, steal Google session cookies, and automate account takeover.