
Research
Security News
Lazarus Strikes npm Again with New Wave of Malicious Packages
The Socket Research Team has discovered six new malicious npm packages linked to North Korea’s Lazarus Group, designed to steal credentials and deploy backdoors.
@privacybydesign/irma-css
Advanced tools
Styling to standardize the IRMA login flow and make it look pretty
This is a package that contains all the necessary CSS to make IRMA flows look pretty and have a standardized look and feel. See the style guide for visual examples and code snippets.
This package has been designed and tested to work with the browsers Chrome, Firefox, Safari, Opera, Edge and IE11.
This package only contains CSS. So basically you just include the CSS file(s) and find the right HTML snippets in the styleguide.
There is a normal version and a minified version of the styles that you can include in your project. The CSS can be linked into your website the regular way. You have to host the CSS file yourself.
<link rel="stylesheet" href="assets/irma.css" />
Alternatively, you can install it as an npm package. This can be useful if you want to use (parts of) the SCSS behind it and override some variables, if you need to package it in some complicated way and if you want more control over updates.
$ npm install irma-css
You can then pull from the entire thing or just bits and pieces of it in your SCSS/SASS files:
# The entire thing:
@import "~irma-css";
# Or just bits and pieces of it:
@import "~irma-css/src/components/irma-form";
Or require the CSS in your javascript if you use a tool like Webpack:
require('@privacybydesign/irma-css/dist/irma.css');
Requires a working git
and npm
on your machine.
# Install dependencies
$ cd irma-css
$ npm install
# Run the compiler & dev server
$ npm run dev
You should now have the style guide running on http://localhost:8080.
Any change you make to the stylesheets will trigger a rebuild of the style guide and will be shown after a browser refresh.
Please only commit your changes to the SCSS files, not any of the generated files:
$ git add irma-css/src/
$ git commit -m "Update button shadows to reflect new design"
After merging one or more PRs, a new version can be released. First, update
package.json
to reflect the new version number. Then:
$ cd irma-css
$ git add package.json
$ npm run clean # Build a clean style guide
$ git add ../docs/styleguide/
$ npm run release # Build a clean new version in dist
$ git add dist/
$ git commit -m "Releasing version xxx"
FAQs
Styling to standardize the IRMA login flow and make it look pretty
The npm package @privacybydesign/irma-css receives a total of 16 weekly downloads. As such, @privacybydesign/irma-css popularity was classified as not popular.
We found that @privacybydesign/irma-css demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 4 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
The Socket Research Team has discovered six new malicious npm packages linked to North Korea’s Lazarus Group, designed to steal credentials and deploy backdoors.
Security News
Socket CEO Feross Aboukhadijeh discusses the open web, open source security, and how Socket tackles software supply chain attacks on The Pair Program podcast.
Security News
Opengrep continues building momentum with the alpha release of its Playground tool, demonstrating the project's rapid evolution just two months after its initial launch.