
Security News
Axios Maintainer Confirms Social Engineering Attack Behind npm Compromise
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.
A tiny, dependency-free, color input field helper that utilizes the native color picker.
A tiny, dependency-free, color input field helper that utilizes the native color picker.
Visit https://kolorfield.js.org
Download the latest version of kolorfield and then place the following HTML in your page's head element:
<script type="text/javascript" src="dist/kolorfield.min.js"></script>
<link rel="stylesheet" href="dist/kolorfield.min.css" />
Place the following HTML in your page's head element (check to make sure the version in the URLs are the version you want):
<script type="text/javascript" src="https://cdn.jsdelivr.net/gh/kodie/kolorfield@0.0.2/dist/kolorfield.min.js"></script>
<link rel="stylesheet" href="https://cdn.jsdelivr.net/gh/kodie/kolorfield@0.0.2/dist/kolorfield.min.css" />
npm install kolorfield --save
// ES6
import kolorfield from 'kolorfield'
// CommonJS
const kolorfield = require('kolorfield')
gpm install kodie/kolorfield --save
bower install kodie/kolorfield --save
<div class="kolorfield">
<input type="color" id="main-color" value="#5185b3">
<button type="button" class="kolorfield-open kolorfield-value" data-kolorfield-style-prop="background-color"></button>
</div>
kolorfield FunctionInitiates kolorfield on any element that has the kolorfield class. This should be a container around your color input.
window.addEventListener('load', function () {
kolorfield()
})
The kolorfield-input class - Any input element with this class will have it's value set to the selected color any time the color is changed. The color will also be set to any value that is entered into this input field.
The kolorfield-open class - Any element with this class will open the color picker when clicked.
The kolorfield-value class - Any element with this class will have it's text content set to the color when the color is changed. If this element is an input, it's value will be updated instead of text content.
The data-kolorfield-style-prop attribute - Set this attribute to a style property (like background or color) on an element to have it's style updated when the color is changed. Multiple style properties can be defined by separating them with a comma (ie. background,color).
The containing kolorfield element (the element with the kolorfield class) will have the following methods attached to it available for use:
var color = document.querySelector('.color')
color.open() // Opens the color picker
color.set('#00ff00') // Sets the color
var currentColor = color.get() // Gets the current color
// The `change` event bubbles up to the containing element so you can detect changes like so:
color.addEventListener('change', function () {
document.body.style.setProperty('--color', event.target.value)
})
minitaur - The ultimate, dependency-free, easy to use, JavaScript plugin for creating and managing modals.
filebokz - A tiny, dependency-free, highly customizable and configurable, easy to use file input with some pretty sweet features.
hashjump - A tiny, dependency-free JavaScript module for handling anchor links and scrolling elements into view.
vanishing-fields - A dependency-free, easy to use, JavaScript plugin for hiding and showing fields.
MIT. See the license file for more info.
FAQs
A tiny, dependency-free, color input field helper that utilizes the native color picker.
The npm package kolorfield receives a total of 0 weekly downloads. As such, kolorfield popularity was classified as not popular.
We found that kolorfield demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.

Security News
Node.js has paused its bug bounty program after funding ended, removing payouts for vulnerability reports but keeping its security process unchanged.

Security News
The Axios compromise shows how time-dependent dependency resolution makes exposure harder to detect and contain.