
Security News
Axios Maintainer Confirms Social Engineering Attack Behind npm Compromise
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.
carousel-webcomponent
Advanced tools
A tiny(1.2Kb), framework agnostic, light weight, zero dependancy, touch friendly carousel component
:clap: & :heart: to auto badger for making badging simple
Most of the carousel components out there do not leverage latest css and javascript features like css scroll snap, flex order and webcomponents etc. Using these features makes carousel much more eligent, reliable, light weight and framework agnostic
This is still a WIP. Feel free to contribute.
This is a webcomponent make sure you are not running on old browsers (by that I mostly mean Internet exploer). If you want to use it in old browser that do not support webcomponents please include webcomponent polyfill from here
This package is ideal and best suitable for static sites. The support for dynamic content on carousel is in roadmap
![]() | ![]() | ![]() | ![]() | ![]() | ![]() | ![]() | ![]() |
| 69+ :heavy_check_mark: | 81+ :heavy_check_mark: | 68+ :heavy_check_mark: | Polyfill :heavy_check_mark: | 64+ :heavy_check_mark: | 11+ :heavy_check_mark: | 11+ :heavy_check_mark: | 79+ :heavy_check_mark: |
The documentation is hosted here
Also you can appreciate by
|
|
FAQs
A tiny(1.2Kb), framework agnostic, light weight, zero dependancy, touch friendly carousel component
We found that carousel-webcomponent demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.

Security News
Node.js has paused its bug bounty program after funding ended, removing payouts for vulnerability reports but keeping its security process unchanged.

Security News
The Axios compromise shows how time-dependent dependency resolution makes exposure harder to detect and contain.