
Research
/Security News
Bitwarden CLI Compromised in Ongoing Checkmarx Supply Chain Campaign
Bitwarden CLI 2026.4.0 was compromised in the Checkmarx supply chain campaign after attackers abused a GitHub Action in Bitwarden’s CI/CD pipeline.
eslint-plugin-jsx-conditionals
Advanced tools
Ensuring variables are cast to booleans whenever using `&&` conditionals in JSX to avoid unwanted side effects
Ensuring variables used in JSX conditionals are cast to booleans whenever using && to avoid unwanted side effects, e.g. for other falsey values like empty strings etc.
// BAD
const Component = ({ check }) => (
<div>
{check && <p>Check passes!</p>}
</div>
);
// GOOD
const Component = ({ check }) => (
<div>
{!!check && <p>Check passes!</p>}
{Boolean(check) && <p>Check passes!</p>}
{check ? <p>Check passes!</p> : null}
</div>
);
yarn add eslint-plugin-jsx-conditionals --dev
In your .eslintrc config:
{
"plugins": [ "jsx-conditionals" ],
"rules": {
"jsx-conditionals/ensure-booleans": "error"
}
}
git clone git@github.com:julianburr/eslint-plugin-jsx-conditionals.git
cd eslint-plugin-jsx-conditionals
yarn
# Run tests
yarn test
FAQs
Ensuring variables are cast to booleans whenever using `&&` conditionals in JSX to avoid unwanted side effects
The npm package eslint-plugin-jsx-conditionals receives a total of 67 weekly downloads. As such, eslint-plugin-jsx-conditionals popularity was classified as not popular.
We found that eslint-plugin-jsx-conditionals demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
Bitwarden CLI 2026.4.0 was compromised in the Checkmarx supply chain campaign after attackers abused a GitHub Action in Bitwarden’s CI/CD pipeline.

Research
/Security News
Docker and Socket have uncovered malicious Checkmarx KICS images and suspicious code extension releases in a broader supply chain compromise.

Product
Stay on top of alert changes with filtered subscriptions, batched summaries, and notification routing built for triage.