
Security News
The Next Open Source Security Race: Triage at Machine Speed
Claude Opus 4.6 has uncovered more than 500 open source vulnerabilities, raising new considerations for disclosure, triage, and patching at scale.
@refinitiv-ui/configurations
Advanced tools
The package contains eslint and TypeScript configurations used for Element Framework development.
Use ESLint to lint your es6 code.
Use TypeScript to keep the code easier to deploy, read and debug.
Configurations are used across all Element Framework components for consistency and code quality.
npm install @refinitiv-ui/configurations --save-dev
This will install the following files:
eslint-config.js - generic ESLint configurationtypescript.eslint-config.js - extends of eslint-config.js with support of recommended linting for TypeScripttsconfig.json - development TypeScript parser configurations to meet ES6 specsprod.tsconfig.json- extends tsconfig.json to provide production configurationsYou can override/use your own files to meet project requirements.
Below configurations are used with TypeScript (Element Framework v7).
Your project level (local) .eslintrc:
{
"root": true,
"extends": ["./node_modules/@refinitiv-ui/configurations/typescript.eslint-config.js"],
"parserOptions": {
"project": "./tsconfig.json"
}
}
eslint from version 6 does not support global modules and cannot resolve extensions by generic package name. Therefore you must ensure that extends contain the full path to the location of this module.
Your project level tsconfig.json:
{
"extends": "@refinitiv-ui/configurations/tsconfig.json"
}
Below configurations are used when TypeScript is not required.
Your project level (local) .eslintrc:
{
"root": true,
"extends": ["./node_modules/@refinitiv-ui/configurations/eslint-config.js"]
}
Modern IDE should pick up configurations automatically and apply to the project.
FAQs
The configuration files used for Element Framework
The npm package @refinitiv-ui/configurations receives a total of 33 weekly downloads. As such, @refinitiv-ui/configurations popularity was classified as not popular.
We found that @refinitiv-ui/configurations demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Claude Opus 4.6 has uncovered more than 500 open source vulnerabilities, raising new considerations for disclosure, triage, and patching at scale.

Research
/Security News
Malicious dYdX client packages were published to npm and PyPI after a maintainer compromise, enabling wallet credential theft and remote code execution.

Security News
gem.coop is testing registry-level dependency cooldowns to limit exposure during the brief window when malicious gems are most likely to spread.