Research
Security News
Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
@vaadin/vaadin-lumo-styles
Advanced tools
Lumo is a design system foundation for modern web applications, used by Vaadin components
Lumo – ✨ enchantment (Finnish) and 🔆 light (Esperanto)
Lumo is a design system foundation for modern, beautiful and accessible web applications.
Lumo contains foundational styles – typography, colors, visual style, sizing & spacing and icons – that components and applications can use to achieve a consistent visual design.
The implementation of Lumo is based on CSS custom properties, and Polymer style modules. Note, that you don’t need to use Polymer to build your application in order to use Lumo.
🚧 Documentation will eventually be deployed at https://vaadin.com 🚧
For documentation and instructions how to get started, use the “Documentation” link in the latest release notes.
Lumo is maintained as a part of the Vaadin platform.
Vaadin components is a collection of web components that use the Lumo design language as their default theme. The Vaadin app starters are also based on Lumo.
Reporting issues and feature request is a great way to help! If you have questions, join the Vaadin components chat – we’re happy to answer Lumo related questions there.
Fork the vaadin-lumo-styles
repository and clone it locally.
Make sure you have npm installed.
When in the vaadin-lumo-styles
directory, run npm install
and then bower install
to install dependencies.
Run polymer serve --open
, browser will automatically open the component API documentation.
You can also open demo/documentation by adding demo to the URL, for example:
Open icons/Lumo Icons.sketch
using Sketch
Follow the instructions in the Sketch document
Run npm install
to install dependencies
Run gulp icons
to generate new versions of icons.html
and font-icons.html
We are using ESLint for linting JavaScript code. You can check if your code is following our standards by running gulp lint
, which will automatically lint all .js
files as well as JavaScript snippets inside .html
files. CSS inside .html
files is also linted at the same time.
gulp lint
Use npm version <new version>
to update the version number in package.json
and in other relevant places such as version.html
, when preparing to release a new version.
Apache License 2.0
FAQs
Lumo is a design system foundation for modern web applications, used by Vaadin components
The npm package @vaadin/vaadin-lumo-styles receives a total of 73,583 weekly downloads. As such, @vaadin/vaadin-lumo-styles popularity was classified as popular.
We found that @vaadin/vaadin-lumo-styles demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Security News
MITRE's 2024 CWE Top 25 highlights critical software vulnerabilities like XSS, SQL Injection, and CSRF, reflecting shifts due to a refined ranking methodology.
Security News
In this segment of the Risky Business podcast, Feross Aboukhadijeh and Patrick Gray discuss the challenges of tracking malware discovered in open source softare.