
Security News
Attackers Are Hunting High-Impact Node.js Maintainers in a Coordinated Social Engineering Campaign
Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.
Backdraft is extensively documented at backdraftjs.org
Note: master is under dev; if you want a working version, use npm.
With npm:
npm install bd-core
With yarn:
yarn add bd-core
With bower:
bower install --save bd-core
For more details see http://backdraftjs.org/install.html
The Backdraft library makes no judgement about how you condition your code for production. Further, the library was designed from the ground up to avoid the need for extra code (and, therefore, complexity) in a "development" version. Therefore, simply include Backdraft in your build as if it was your own code; there is nothing more to it than that.
The GitHub repo altoviso/backdraft-examples includes several examples including all tutorial code, the todomvc example, and the js-framework-benchmark example.
To run the tests, start a http server that can serve the project directory and navigate to
http:///bd-core/node_modules/bd-smoke/smoke-runner.html
If you have a usage question, please open an issue on stackoverflow; please tag the question with "backdraft".
If you've found a bug, please open an issue in this repository. Your chances of getting attention are much higher if you provide a reproducible test case.
You may also request an enhancement by opening an issue. Again, your chances of getting that enhancement incorporated into future releases are much higher if you provide a pull request with a test.
Commercial support and program design and construction services are available from ALTOVISO LLC. You may email requests to consult@altoviso.com or contact us directly at 925.229.0667 8:00 A.M. - 6:00 P.M., Pacific Time Zone.
FAQs
a JavaScript library for building browser-hosted user interfaces
We found that bd-core demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.

Security News
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.

Security News
Node.js has paused its bug bounty program after funding ended, removing payouts for vulnerability reports but keeping its security process unchanged.