
Research
Shai-Hulud Descends to Hades: Miasma Worm Campaign Spreads with New PyPI Wave
Socket found 37 malicious PyPI wheels that abuse Python startup hooks to launch a Bun-powered credential stealer tied to Mini Shai-Hulud/Miasma.
react-input-verification-code
Advanced tools
A verification code input, autocompletion friendly
npm install --save react-input-verification-code
yarn add react-input-verification-code
import * as React from 'react';
import ReactInputVerificationCode from 'react-input-verification-code';
export default function App() {
return <ReactInputVerificationCode />;
}
| Key | Type | Default | Required | Description |
|---|---|---|---|---|
| autoFocus | boolean | false | false | Focus on render |
| length | number | 4 | false | How many items will be rendered |
| onChange | function | () => {} | false | Function called when the value changes |
| onCompleted | function | () => {} | false | Function called when the code is completed |
| placeholder | string | · | false | String rendered in each item when no value has been typed |
| value | string | () => {} | false | Control internal input value |
| type | text or password | text | false | Display the item value or a password mask |
| passwordMask | string | • | false | Password mask |
The following CSS properties are set globally so you can easily override them to fit your needs
| Key | Default | Description |
|---|---|---|
--ReactInputVerificationCode-itemWidth | 4.5rem | Width of an item |
--ReactInputVerificationCode-itemHeight | 5rem | Height of an item |
--ReactInputVerificationCode-itemSpacing | 1rem | Space between two items |
MIT © ugogo
FAQs
A verification code input, autocompletion friendly
The npm package react-input-verification-code receives a total of 4,934 weekly downloads. As such, react-input-verification-code popularity was classified as popular.
We found that react-input-verification-code demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
Socket found 37 malicious PyPI wheels that abuse Python startup hooks to launch a Bun-powered credential stealer tied to Mini Shai-Hulud/Miasma.

Security News
RubyGems and Bundler 4.0.13 introduced an opt-in cooldown feature that delays newly published gems during dependency resolution.

Security News
pnpm 11.5 now recognizes npm staged publish approvals in release metadata, preventing those releases from being mistaken for lower-trust package publishes.