Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Listens on editable elements and calls back on significant changes
It listens on the events that could possibly be edits on the provided element and determines their edit type.
Edited supports the following edit types:
Edited does work to callback only on edits that you care about.
Instead of 19 callbacks when the user types awesomesauce module
,
you get 3 callbacks.
One for awesomesauce
,
one for the space,
and another for module
.
Specifically,
when the Edit Type changes,
then it is determined that a sensible edit was made
and the provided callback is fired.
For the paste and drop Edit Type
s,
every edit counts as a sensible edit.
Optionally,
a function can be provided,
which will be called back on any edit
(not just Sensible Edits
).
This module may be useful for registering undo/redo points, resource–friendlier autosaves and probably more (register an issue describing your integration and I’ll mention it here).
var Edited = require(‘edited’)
var onSensible = function () {
// register undo point, autosave, etc
}
var onAny = function () {
// this may also be useful
}
var edited = new Edited(someEditableElement, onSensible, onAny)
// benefit!
// in case you don’t require it any more
edited.detach() // and it will stop listening
The callbacks are called synchronously, before the native event (the edit) occurs.
The callbacks are called with the instance as this
.
The provided editable element can be accessed as the element
property of
the instance.
Copyright © 2015 PolicyStat LLC
BSD-3-Clause
FAQs
Listens on editable elements and calls back on significant changes
The npm package edited receives a total of 13 weekly downloads. As such, edited popularity was classified as not popular.
We found that edited demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.