Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
@react-native-community/eslint-plugin
Advanced tools
ESLint rules for @react-native-community/eslint-config
This plugin is intended to be used in @react-native-community/eslint-plugin
. You probably want to install that package instead.
yarn add --dev eslint @react-native-community/eslint-plugin
Note: We're using yarn
to install deps. Feel free to change commands to use npm
3+ and npx
if you like
Add to your eslint config (.eslintrc
, or eslintConfig
field in package.json
):
{
"plugins": ["@react-native-community"]
}
error-subclass-name
NOTE: This rule is primarily used for developing React Native itself and is not generally applicable to other projects.
Enforces that error classes ( = classes with PascalCase names ending with Error
) only extend other error classes, and that regular functions don't have names that could be mistaken for those of error classes.
no-haste-imports
Disallows Haste module names in import
statements and require()
calls.
platform-colors
Enforces that calls to PlatformColor
and DynamicColorIOS
are statically analyzable to enable performance optimizations.
FAQs
ESLint rules for @react-native-community/eslint-config
The npm package @react-native-community/eslint-plugin receives a total of 429,606 weekly downloads. As such, @react-native-community/eslint-plugin popularity was classified as popular.
We found that @react-native-community/eslint-plugin demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 31 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.