Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
browser-audio
Advanced tools
A simple cross-browser audio player. Uses Web Audio when possible (except in Firefox where HTML5 <audio>
works better) and falls back to HTML5 <audio>
. Supports IE10+ and most mobile browsers.
The file formats supported depend on the underlying Browser implementation, but .mp3
should work in most situations.
Note this library is only intended for playing multiple small sound effects, there's no streaming support for large files.
npm install browser-audio
var audio = require('browser-audio')
var file = audio.create('url-to-file.mp3')
file.play() // plays when loaded
// or...
// files are instances of EventEmitter
file.once('load', file.play.bind(file))
// other methods/properties:
file.stop()
file.state // 'loading' or 'loaded'
file.duration
file.currentTime
// multiple file load helper
var file1 = audio.create('...')
var file2 = audio.create('...')
audio.whenLoaded([file1, file2], function () {
// all files loaded
})
MIT
FAQs
Browser audio player
The npm package browser-audio receives a total of 3 weekly downloads. As such, browser-audio popularity was classified as not popular.
We found that browser-audio demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.