Research
Security News
Kill Switch Hidden in npm Packages Typosquatting Chalk and Chokidar
Socket researchers found several malicious npm packages typosquatting Chalk and Chokidar, targeting Node.js developers with kill switches and data theft.
@uiw/react-card
Advanced tools
通用卡片容器,将信息聚合在卡片容器中展示,用来显示文字、列表、图文等内容。
import { Card } from 'uiw';
// or
import Card from '@uiw/react-card';
包含标题、内容、操作区域。
import React from 'react';
import { Card } from 'uiw';
function Demo () {
return <div>
<Card title="Card标题" extra={<a href="#">更多</a>} style={{ width: 300 }}>
卡片内容<br/>
卡片内容<br/>
卡片内容<br/>
</Card>
</div>
}
export default Demo
在灰色背景上使用无边框的卡片。
import React from 'react';
import { Card } from 'uiw';
function Demo() {
return <Card title="Card标题" bordered={false} style={{ width: 300 }}>
卡片内容<br/>
卡片内容<br/>
卡片内容<br/>
</Card>
}
export default Demo
只包含内容区域。
import React from 'react';
import { Card } from 'uiw';
function Demo() {
return <Card style={{ width: 300 }}>
卡片内容<br/>
卡片内容<br/>
卡片内容<br/>
</Card>
}
export default Demo
可以调整默认边距,设定宽度。
import React from 'react';
import { Card } from 'uiw';
let titleStyle = { padding: `10px 16px` };
function Demo() {
return <Card style={{ width: 240 }} bodyStyle={{ padding: 10 }}>
<div>
<img alt="example" width="100%" src="https://avatars1.githubusercontent.com/u/1680273?v=4" />
</div>
<div style={titleStyle}>
<h3 style={{margin:0}}>我爱漂亮妹妹</h3>
<p style={{margin:0}}><a href="https://uiwjs.github.io">https://uiwjs.github.io</a></p>
</div>
</Card>
}
export default Demo
import React from 'react';
import { Card, Icon } from 'uiw';
const footer = (
<a href="https://uiwjs.github.io">
<Icon type='user' />
16 Friends
</a>
)
function Demo() {
return <Card
title="Card标题"
footer={footer}
style={{ width: 240 }}
bodyStyle={{ padding: 0 }}
>
<div>
<img alt="example" width="100%" src="https://avatars1.githubusercontent.com/u/1680273?v=4" />
</div>
<div style={{ padding: `10px 16px` }}>
<h3 style={{margin:0}}>我爱漂亮妹妹</h3>
<p style={{margin:0}}><a href="https://uiwjs.github.io">https://uiwjs.github.io</a></p>
</div>
</Card>
}
export default Demo
设置属性 active=true
将激活卡片,默认展示鼠标经过的样式。
import React from 'react';
import { Card, Icon } from 'uiw';
const footer = (
<a href="https://uiwjs.github.io">
<Icon type='user' />
16 Friends
</a>
)
function Demo() {
return <Card
active
title="Card标题"
footer={footer}
style={{ width: 240 }}
bodyStyle={{ padding: 0 }}
>
<div>
<img alt="example" width="100%" src="https://avatars1.githubusercontent.com/u/1680273?v=4" />
</div>
<div style={{ padding: `10px 16px` }}>
<h3 style={{margin:0}}>我爱漂亮妹妹</h3>
<p style={{margin:0}}><a href="https://uiwjs.github.io">https://uiwjs.github.io</a></p>
</div>
</Card>
}
export default Demo
参数 | 说明 | 类型 | 默认值 |
---|---|---|---|
title | 卡片标题 | String/ReactNode | - |
footer | 页脚内容的简写 | String/ReactNode | - |
extra | 卡片右上角的操作区域 | String/ReactNode | - |
bordered | 是否显示边框 | Boolean | true |
active | 展示鼠标经过的样式。 | Boolean | false |
noHover | 取消鼠标移过时边框阴影 | Boolean | false |
bodyStyle | 设置 body 的样式 | Object | - |
bodyClassName | 设置 body 的 className | String | - |
FAQs
Card component
The npm package @uiw/react-card receives a total of 171 weekly downloads. As such, @uiw/react-card popularity was classified as not popular.
We found that @uiw/react-card demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers found several malicious npm packages typosquatting Chalk and Chokidar, targeting Node.js developers with kill switches and data theft.
Security News
pnpm 10 blocks lifecycle scripts by default to improve security, addressing supply chain attack risks but sparking debate over compatibility and workflow changes.
Product
Socket now supports uv.lock files to ensure consistent, secure dependency resolution for Python projects and enhance supply chain security.