
Research
/Security News
Weaponizing Discord for Command and Control Across npm, PyPI, and RubyGems.org
Socket researchers uncover how threat actors weaponize Discord across the npm, PyPI, and RubyGems ecosystems to exfiltrate sensitive data.
polymer-native
Advanced tools
No new conceptions. Feel free to use HTML/CSS which you know so good to develop completely native applications for mobile platforms.
Currently mobile devices are powerful enough to run mobile web applications at 60 FPS however controls behaviour (buttons, sliders, form elements) is different between web and native platforms. Experienced user notice this difference immideately which results in lower user satisfaction for web based apps because they got used to consistant UI behaviour on mobile platform of their choice. Creating native facades for web components results in better user experience without additional effort or knowledge needed.
<style>
body {
margin: 20px;
}
#icon {
display: inline-block;
margin-bottom: 20px;
}
#submit-input {
width: 100%;
height: 40px;
padding: 10px;
font-size: 16px;
margin-bottom:10px;
}
button {
color: #ffffff;
width: 100%;
height: 40px;
background-color: black;
border-radius: 5px;
}
</style>
<body>
<img is="native-image" width="256" height="256" id="icon" src="img/lenna.png"></img>
<input is="native-input" id="submit-input" value="Hello world!"></input>
<button is="native-button" onclick="alert(document.getElementById('submit-input').value);">Alert input value</button>
</body>
Will result in app looking in the same way in browser and on mobile device or emulator but the difference is that in browser all controls are web and on mobile UI is native which leads to higher user satisfaction without additional job done.
Installing via NPM
npm install polymer-native -g
Initializing new project
polymer-native init MyTestProject
Running project on iOS
polymer-native run
Copyright 2016 Denis Radin aka PixelsCommander
FAQs
Native bindings for web components and Polymer framework
We found that polymer-native demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
/Security News
Socket researchers uncover how threat actors weaponize Discord across the npm, PyPI, and RubyGems ecosystems to exfiltrate sensitive data.
Security News
Socket now integrates with Bun 1.3’s Security Scanner API to block risky packages at install time and enforce your organization’s policies in local dev and CI.
Research
The Socket Threat Research Team is tracking weekly intrusions into the npm registry that follow a repeatable adversarial playbook used by North Korean state-sponsored actors.