Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
A simple browser module for displaying stacking notifications.
This module makes as few assumptions about styling as possible, and simply handles stacking notifications fixed to the screen – you'll even have to remove the elements yourself when they're done. None the less, this should simplify the implementation for you while still providing you plenty of design flexibility.
Returns a notify
function that you can use to create new notifications.
Accepts the following options:
top
: boolean – set to true to align the notifications with the top of the screen.left
: boolean – set to true to align the notifications with the left of the screen.bottom
: convenience option – opposite of top
.right
: convenience option – opposite of left
.Create a new notification. You're handed back a DOM element which will be
attached to a fixed
element shared with the other notifications.
Optionally, you can pass a timeout
value in milliseconds to automatically
remove the notification.
Triggered when a new notification is created. Use this for adding common content/functionality to notifications.
The node
passed to the event is that notification's <div>
element.
close
is a function which will trigger the exit
event on the notification,
in case you opted not to use a timeout or would like to remove it early.
Triggered when a notification is removed. Use this to remove notifications
from the DOM. The node
passed to the event is that notification's <div>
element.
MIT. See LICENSE.md for details.
FAQs
A simple browser module for displaying stacking notifications
We found that apprise demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.