
Security News
/Company News
Securing the Financial Frontier: How Capital One Uses Socket for Open Source Security
Capital One is partnering with Socket to proactively secure its open source supply chain.
@jesscss/style-resolver
Advanced tools
**Stylesheet import resolution across CSS, Less, SCSS, and Jess — include paths, load paths, and extension/index resolution.**
Stylesheet import resolution across CSS, Less, SCSS, and Jess — include paths, load paths, and extension/index resolution.
@jesscss/style-resolver is a building block for
Jess. Given a stylesheet's source and an import statement, it
figures out which file that import actually points to, applying each language's
lookup rules (Less and SCSS candidate expansion, partials, index files, search
paths).
It handles the mechanics of finding imports — extracting import statements from source, expanding a bare import path into the ordered list of candidate files a given language would try, and resolving that against a filesystem-like interface.
Import resolution is a shared concern the compiler and tooling both need. It is
also one of the building blocks toward the broader module/scoping story on the
Jess roadmap (whose headline is the post-.jess minimal browser build) — but this
package is just the resolver, not that feature.
This is an internal package. Most people should install
jess and use the jess CLI.
The JavaScript/TypeScript API is not yet stabilized and is intentionally
undocumented for now.
Alpha. Published to npm under both the latest and alpha dist-tags. Please
report bugs.
FAQs
Unknown package
The npm package @jesscss/style-resolver receives a total of 95 weekly downloads. As such, @jesscss/style-resolver popularity was classified as not popular.
We found that @jesscss/style-resolver demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
/Company News
Capital One is partnering with Socket to proactively secure its open source supply chain.

Security News
Socket CTO Ahmad Nassri discusses how to keep AI agents from bypassing package blocks, limit credential access, and monitor their actions.

Security News
GPT-6 Astra tried to plant malicious code in simulated open source projects using fake GitHub accounts and deceptive PRs during an assigned CTF challenge.