
Research
PyPI Package Disguised as Instagram Growth Tool Harvests User Credentials
A deceptive PyPI package posing as an Instagram growth tool collects user credentials and sends them to third-party bot services.
babel-plugin-prismjs
Advanced tools
A babel plugin to use PrismJS with standard bundlers.
This plugin allows you to treat PrismJS as a standard module and configure what languages, plugins, & themes you want to bundle with Prism.
In your code, import prismjs
:
import Prism from 'prismjs';
Prism.highlightAll();
The exported Prism
object will be the fully-configured Prism instance.
In your .babelrc, register the plugin and configure its dependencies:
{
"plugins": [
["prismjs", {
"languages": ["javascript", "css", "markup"],
"plugins": ["line-numbers"],
"theme": "twilight",
"css": true
}]
]
}
Each key are used as follows:
languages
: Array of languages to include in the bundle or "all"
to include all languages. Those languages can be found here.plugins
: Array of plugins to include in the bundle. Those plugins can be found here.theme
: Name of theme to include in the bundle. Themes can be found here.css
: Boolean indicating whether to include .css
files in the result. Defaults to false
. If true
, import
s will be added for .css
files. Must be true
in order for theme
to work.FAQs
A babel plugin to use PrismJS with standard bundlers.
The npm package babel-plugin-prismjs receives a total of 44,589 weekly downloads. As such, babel-plugin-prismjs popularity was classified as popular.
We found that babel-plugin-prismjs demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
A deceptive PyPI package posing as an Instagram growth tool collects user credentials and sends them to third-party bot services.
Product
Socket now supports pylock.toml, enabling secure, reproducible Python builds with advanced scanning and full alignment with PEP 751's new standard.
Security News
Research
Socket uncovered two npm packages that register hidden HTTP endpoints to delete all files on command.