Research
Security News
Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
@statnett/vue-plotly
Advanced tools
npm install @statnett/vue-plotly plotly.js --save
Then use it as a module:
import VuePlotly from '@statnett/vue-plotly'
export default {
components: {
VuePlotly
},
data: function () {
return {
data: [{ x: [1, 3], y: [2, 4] }],
layout: {},
options: {}
}
}
}
<vue-plotly :data="data" :layout="layout" :options="options"/>
To use vue-plotly with webpack you should see this example repo for how to make that work.
In short, install ify-loader
and transform-loader
and add the following to your webpack config:
module: {
rules: [
{
test: /\.js$/,
use: [
'ify-loader',
'transform-loader?plotly.js/tasks/util/compress_attributes.js',
]
}
]
}
https://plot.ly/javascript/getting-started/#start-plotting might also be relevant.
The browser UMD build is located in the dist
folder.
The component supports the following props:
data
The traces to draw. Will trigger a call to react when changed.
layout
The layout options. Will trigger a relayout when changed.
options
The general options https://github.com/plotly/plotly.js/blob/master/src/plot_api/plot_config.js
autoResize
(default: false
, not reactive)
If true, the graph resizes when the window is resized.
watchShallow
(default: false
, not reactive)
If true, does not trigger a redraw when child properties of data changes, but not the data object itself. Might be needed for large datasets.
All plotly events are captured and emitted as vue events. The names are without the plotly_
prefix. The following events are supported:
click
, hover
, unhover
, selecting
, selected
, restyle
, relayout
, autosize
, deselect
, doubleclick
, redraw
, animated
All functions defined by plotly are available as methods on the component. However it is not recommendable to call most of these manually since it is better to change the reactive properties on the data, layout or options directly, This will in turn trigger an update to the graph. If you do call these manually, the graph data and the props data might not be in sync.
For certain scenarios though it, like downloading an image, you need to call these functions. You call the functions as you would normally, but without the first argument, the DOM element.
The following functions are exposed:
restyle
, relayout
, update
, addTraces
, deleteTraces
, moveTraces
, extendTraces
, prependTraces
, purge
, toImage
, downloadImage
, plot
, newPlot
Some have special handling:
toImage
Has default png format, and graph width and height pre filled, this can be overridden.
downloadImage
Has default png format, and graph width and height pre filled. Filename is set to the title of the graph and with a date postfix. These can all be overridden.
plot
Deprecated: https://plot.ly/javascript/plotlyjs-function-reference/#plotlyplot
Accepts no arguments. Uses data, layout and options from the props data.
newPlot
Accepts no arguments. Uses data, layout and options from the props data.
react
Accepts no arguments. Uses data, layout and options from the props data.
Read more about plotlyjs function reference here: https://plot.ly/javascript/plotlyjs-function-reference/
FAQs
A vue wrapper for plotly.js
The npm package @statnett/vue-plotly receives a total of 462 weekly downloads. As such, @statnett/vue-plotly popularity was classified as not popular.
We found that @statnett/vue-plotly demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Security News
MITRE's 2024 CWE Top 25 highlights critical software vulnerabilities like XSS, SQL Injection, and CSRF, reflecting shifts due to a refined ranking methodology.
Security News
In this segment of the Risky Business podcast, Feross Aboukhadijeh and Patrick Gray discuss the challenges of tracking malware discovered in open source softare.