
Research
/Security News
Shai Hulud Strikes Again (v2)
Another wave of Shai-Hulud campaign has hit npm with more than 500 packages and 700+ versions affected.

Atomic, OOCSS-driven, layered, design-free, BEM-based, responsive and mighty Sass framework for rapid and painless development.
npm install ekzo --save
Import parts which you would like to use explicitly in your stylesheet:
@import 'node_modules/ekzo/...';
Imports should be layered in following order:
Refer to Kotsu style.scss as an example.
Sass 3.4.2 or higher.
Autoprefixer is highly advised.
Fully works in:
IE10+, Edge 12+, Chrome 21+, Firefox 28+, Safari 6.1+, Opera 12.1+, Opera Mobile 12.1+, iOS Safari 7.1+, Android 4.4+.
Ekzo provides graceful regression for IE9 and below:
flexbox model to inline-block, table or float-based models. While they will maintain proper flow of elements, alignment (especially vertical) will be drastically limited or differ from modern browsers.text-align (horizontal alignment) and vertical-align (vertical alignment). This means that alignment of element might be affected differently from modern browsers.::placeholder and ::selection won't be styled nor displayedIn general, in IE8 and IE9 websites will be browsable and not fall to pieces completely, but due to layouts model differences user experience might be affected.
To enable regression, include _ie.scss in stylesheet, which will be served only to IE9 and below browsers.
Kotsu — advanced Grunt-based web starter kit with Circle CI continuous deployment integration.
FAQs
Atomic Sass framework for rapid and painless development
We found that ekzo demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
Another wave of Shai-Hulud campaign has hit npm with more than 500 packages and 700+ versions affected.

Product
Add real-time Socket webhook events to your workflows to automatically receive software supply chain alert changes in real time.

Security News
ENISA has become a CVE Program Root, giving the EU a central authority for coordinating vulnerability reporting, disclosure, and cross-border response.