
Product
Announcing Socket Fix 2.0
Socket Fix 2.0 brings targeted CVE remediation, smarter upgrade planning, and broader ecosystem support to help developers get to zero alerts.

a minimal set of typography devoted to Medium.com
npm install --save medium.css
If you are not using a bundler download the file medium.css and link it in your html
live: https://codepen.io/lucagez/full/bQObBe/
If you want to run the demo locally just clone the repo and run npm install and then npm start inside /demo directory
I found myself always struggling for for a basic set of rules to make a decent reading experience. I find this minimal boilerplate useful for bootstrapping a project with a typography created learning from the best: Medium.com.
This stylesheet is meant to be only a starting point. So it covers only the basics html elements. The elements covered are:
h1h2paiblockquotecodeThere are three custom classes:
.highlighted, highlights text setting background-color.first-letter, a big first letter that spans two lines.subtitle, for subtitlesThe Google fonts I found that best mimics the feeling of Medium.com reading experience:
Lora, serifMontserrat, sans-serifPlayfair Display, serifAll PRs are welcomed! If you have some ideas on how to extend this stylesheet don't hesitate 😎
MIT
FAQs
a minimal set of typography devoted to Medium.com
We found that medium.css demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Product
Socket Fix 2.0 brings targeted CVE remediation, smarter upgrade planning, and broader ecosystem support to help developers get to zero alerts.

Security News
Socket CEO Feross Aboukhadijeh joins Risky Business Weekly to unpack recent npm phishing attacks, their limited impact, and the risks if attackers get smarter.

Product
Socket’s new Tier 1 Reachability filters out up to 80% of irrelevant CVEs, so security teams can focus on the vulnerabilities that matter.