
Security News
Inside Lodash’s Security Reset and Maintenance Reboot
Lodash 4.17.23 marks a security reset, with maintainers rebuilding governance and infrastructure to support long-term, sustainable maintenance.
plotly.js-dist
Advanced tools
Ready-to-use plotly.js distributed bundle.
Contains trace modules bar, barpolar, box, candlestick, carpet, choropleth, choroplethmap, choroplethmapbox, cone, contour, contourcarpet, densitymap, densitymapbox, funnel, funnelarea, heatmap, histogram, histogram2d, histogram2dcontour, icicle, image, indicator, isosurface, mesh3d, ohlc, parcats, parcoords, pie, sankey, scatter, scatter3d, scattercarpet, scattergeo, scattergl, scattermap, scattermapbox, scatterpolar, scatterpolargl, scattersmith, scatterternary, splom, streamtube, sunburst, surface, table, treemap, violin, volume and waterfall.
For more info on plotly.js, go to https://github.com/plotly/plotly.js#readme
npm install plotly.js-dist
// ES6 module
import Plotly from 'plotly.js-dist'
// CommonJS
var Plotly = require('plotly.js-dist')
Code and documentation copyright 2025 Plotly, Inc.
Code released under the MIT license.
Docs released under the Creative Commons license.
Please visit complete list of dependencies.
FAQs
Ready-to-use plotly.js distributed bundle.
The npm package plotly.js-dist receives a total of 93,231 weekly downloads. As such, plotly.js-dist popularity was classified as popular.
We found that plotly.js-dist demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 15 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Lodash 4.17.23 marks a security reset, with maintainers rebuilding governance and infrastructure to support long-term, sustainable maintenance.

Security News
n8n led JavaScript Rising Stars 2025 by a wide margin, with workflow platforms seeing the largest growth across categories.

Security News
The U.S. government is rolling back software supply chain mandates, shifting from mandatory SBOMs and attestations to a risk-based approach.