Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
@mui/joy
Advanced tools
Joy UI is a library of beautifully designed React UI components.
It features foundational components such as the ones you'd find in Material UI and it comes with a beautifully designed default theme so you can rapidly start your own design system. You should see Joy UI as a starting point. It comes with a lot of customization features so you match it to your desired look and feel.
Warning As of today, Joy UI is in active development, with an alpha version soon to be released. We're adding new components and features regularly, and you're welcome to contribute! Look for the
package: joy-ui
label on open issues and pull requests in the mui/material-ui repository on GitHub to see what other community members are working on, and feel free to submit your own.
Get to know more at Joy UI's overview page.
FAQs
Joy UI is an open-source React component library that implements MUI's own design principles. It's comprehensive and can be used in production out of the box.
The npm package @mui/joy receives a total of 69,290 weekly downloads. As such, @mui/joy popularity was classified as popular.
We found that @mui/joy demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 11 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.