
Security News
Attackers Are Hunting High-Impact Node.js Maintainers in a Coordinated Social Engineering Campaign
Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.
combobox-component
Advanced tools
ComboBoxComponent is a very lightweight and dependency-free web component written in pure JavaScript.
ComboBoxComponent is a very lightweight (just over 7KB) and dependency-free web component written in pure JavaScript. See the online demo.

The same motivation as always: I needed a component that didn't require any heavy dependencies. I didn't find anything that met all my needs, so I developed mine.
All desktop/mobile recent browsers.
To compile ComboBoxComponent by yourself, make sure that you have Node.js installed, then:
npm install and wait for the necessary modules installation. Webpack will be installed, look at the other dev dependencies in the package.json file.npm run dev command opens a new browser window for developing purposes, npm run build compiles in dist folder.npm run jsdoc command generates the code documentation in docs folder.That's it!
Let me know with a link if you've used ComboBoxComponent in some interesting way, or on a popular site.
FAQs
ComboBoxComponent is a very lightweight and dependency-free web component written in pure JavaScript.
We found that combobox-component demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.

Security News
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.

Security News
Node.js has paused its bug bounty program after funding ended, removing payouts for vulnerability reports but keeping its security process unchanged.