Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
carbon-components
Advanced tools
The Carbon Design System is IBM’s open-source design system for products and experiences.
The Carbon Design System is a series of individual styles and components, that when combined make beautiful, intuitive designs. These designs are systemic and logical, as they all follow the same universal principles.
The component library gives developers a collection of re-usable HTML and SCSS partials for building their products.
To install carbon-components
in your project, you will need to run the
following command using npm:
npm install -S carbon-components
If you prefer Yarn, use the following command instead:
yarn add carbon-components
If you just want to try out carbon-components
, you can also use
CodeSandbox.
(Important note: src
directory in the package has been deprecated and
subject to breaking changes. Please use es
/umd
/scss
directories instead)
Thanks goes to these wonderful people :key::
This project follows the all-contributors specification. Contributions of any kind welcome!
FAQs
The Carbon Design System is IBM’s open-source design system for products and experiences.
We found that carbon-components demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 6 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.