Security News
PyPI’s New Archival Feature Closes a Major Security Gap
PyPI now allows maintainers to archive projects, improving security and helping users make informed decisions about their dependencies.
@opencreek/eslint-plugin-storybook
Advanced tools
Liniting rules to prevent storybook pitfalls
Liniting storybook mistakes
You'll first need to install ESLint:
npm i eslint --save-dev
Next, install @opencreek/eslint-plugin-storybook
:
npm install @opencreek/eslint-plugin-storybook --save-dev
yarn add --dev @opencreek/eslint-plugin-storybook
Add @opencreek/ts
to the plugins section of your .eslintrc
configuration file. You can omit the eslint-plugin-
prefix:
{
"plugins": ["@opencreek/ts"]
}
Then configure the rules you want to use under the rules section.
{
"rules": {
"@opencreek/storybook/nextjs-pages-no-default-export-function": "error"
}
}
@opencreek/storybook/no-default-export-with-modification
Dissallows export default function
with modiciation to the exporet value.Because of how storybook uses acorn, and it interplays with react doc gen and default exports that have values attached, we need to always have them extra.
Fails:
export default function BlaPage() {
//...
}
BlaPage.Layout = "layout"
Passes:
function BlaPage() {
//...
}
BlaPage.Layout = "layout"
export default function BlaPage
export default function BlaPage() {
//...
}
FAQs
Liniting rules to prevent storybook pitfalls
We found that @opencreek/eslint-plugin-storybook demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 3 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
PyPI now allows maintainers to archive projects, improving security and helping users make informed decisions about their dependencies.
Research
Security News
Malicious npm package postcss-optimizer delivers BeaverTail malware, targeting developer systems; similarities to past campaigns suggest a North Korean connection.
Security News
CISA's KEV data is now on GitHub, offering easier access, API integration, commit history tracking, and automated updates for security teams and researchers.