Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
basic-fade-overflow
Advanced tools
Fades out content that overflows so the user knows there's more.
ElementBase
Fades out content that overflows so the user knows there's more.
This component doesn't handle interactivity.
The component needs to know the color it should fade to, which it tries to infer from the background color. In some situations, this may not work, in which case you can explicitly set the fadeColor attribute.
The component currently always displays the fade, even if the component's content is short enough to fit completely in view.
Kind: global class
Extends: ElementBase
ElementBase
boolean
The color of the fade.
The fade color should match the background color. The component does its best to infer the background color, but in some situations, that may not work. In those cases, you can manually identify the background color. This should be a solid color.
Kind: instance property of FadeOverflow
Default: white
Attribute: fadeColor
Infer the fade color from background color. If you have programmatically changed the color behind the component, you can invoke this method to have the component try to pick up the new background color.
Kind: instance method of FadeOverflow
boolean
True if the component should show the fade to the background color.
Kind: instance property of FadeOverflow
Default: true
FAQs
Fades out content that overflows so the user knows there's more.
We found that basic-fade-overflow demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.