Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
@the-code-mill/portal
Advanced tools
[![npm version](https://badge.fury.io/js/%40tryghost%2Fportal.svg)](https://badge.fury.io/js/%40tryghost%2Fportal)
Drop-in script to make the bulk of Ghost membership features work on any theme.
Ghost automatically injects Portal script on all sites running Ghost 4 or higher.
Alternatively, Portal can be enabled on non-ghost pages directly by inserting the below script on the page.
<script defer src="https://unpkg.com/@the-code-mill/portal@latest/umd/portal.min.js" data-ghost="https://mymemberssite.com"></script>
The data-ghost
attribute expects the URL for your Ghost site, which is the only input Portal needs to work with your site's membership data via Ghost APIs.
By default, the script adds a default floating trigger button on the bottom right of your page which is used to trigger the popup on screen.
Its possible to add custom trigger button of your own by adding data attribute data-portal
to any HTML tag on page, and also specify a specific page to open from it by using it as data-portal=signup
.
The script also adds custom class names to this element for open and close state of popup - gh-portal-open
and gh-portal-close
, allowing devs to update its UI based on popup state.
Refer the docs to read about ways in which Portal can be customized for your site.
This section is mostly relevant for core team only for active Portal development. Always use the unpkg link for testing/using latest released portal script.
yarn start:dev
to start Portal in development modeconfig.local.json
in Ghost repo to add "portal" config pointing to local dev server url as instructed on terminal.5368
for loading local Portal script on Ghost site. It's also possible to specify a custom port when running the script using - --port=xxxx
.In the project directory, you can also run:
yarn start
Runs the app in the development mode.
Open http://localhost:3000 to view it in the browser.
The page will reload if you make edits.
You will also see any lint errors in the console.
yarn build
Creates the production single minified bundle for external use in umd/portal.min.js
.
yarn test
Launches the test runner in the interactive watch mode.
See the section about running tests for more information.
Run yarn ship
to publish new version of script.
yarn ship
is an alias for npm publish
yarn build
(prePublish)@the-code-mill/portal
and creates an unpkg link for script at https://unpkg.com/@the-code-mill/portal@VERSION(Core team only)
This project was bootstrapped with Create React App. You can learn more in the Create React App documentation.
FAQs
[![npm version](https://badge.fury.io/js/%40tryghost%2Fportal.svg)](https://badge.fury.io/js/%40tryghost%2Fportal)
The npm package @the-code-mill/portal receives a total of 16 weekly downloads. As such, @the-code-mill/portal popularity was classified as not popular.
We found that @the-code-mill/portal demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.