Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
@times-components/article-paragraph
Advanced tools
This packages provides a component for displaying an article paragraph, including support for displaying a "drop cap" at the beginning of a paragraph.
The drop cap is implemented using CSS floats, and should work with any styling or markup used.
Please read CONTRIBUTING.md before contributing to this package
Please see our main README.md to get the project running locally
The code can be formatted and linted in accordance with the agreed standards.
yarn fmt
yarn lint
Testing can be done on each platform individually
yarn test:web
Visit the official
The API for this package is likely to change radically in the foreseeable future. It was written with the intention of supporting arbitrary numbers of characters being displayed as a drop cap. However, the acceptance criteria for the feature we use this package for has since changed, and this presents the opportunity for simplifying the API. In the future, this package will simply have a toggle for displaying a drop cap, and will display the first character as a drop cap when it is enabled.
FAQs
Article Paragraph
The npm package @times-components/article-paragraph receives a total of 246 weekly downloads. As such, @times-components/article-paragraph popularity was classified as not popular.
We found that @times-components/article-paragraph demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.