
Security News
AI Slop Is Polluting Bug Bounty Platforms with Fake Vulnerability Reports
AI-generated slop reports are making bug bounty triage harder, wasting maintainer time, and straining trust in vulnerability disclosure programs.
react-scrabble
Advanced tools
The familiar scrabble word game written in React.js
The data should be of the following form
const data = [
{
word: 'FAR',
hint: '3 letter word that means not so close'
},
{
word: 'PERIODIC',
hint: '8 letter word, your timetable has this'
}
]
You can initialise the board by passing the data props
import {Board} from 'react-scrabble'
class App extends Component {
render() {
return (
<Board data={data}/>
);
}
}r
cd react-scrabble/
yarn install
yarn run storybook
npm run lint
: Lint all js filesnpm run lintfix
: fix linting errors of all js filesnpm run semantic-release
: make a release. Leave it for CI to do.npm run storybook
: Start developing by using storybooknpm run test
: Run tests. tests file should be written as *.test.js
and using ES2015npm run test:watch
: Watch tests while writingnpm run test:cover
: Show coverage report of your testsnpm run test:report
: Report test coverage to codecov.io. Leave this for CInpm run build
: transpile all ES6 component files into ES5(commonjs) and put it in dist
directorynpm run docs
: create static build of storybook in docs
directory that can be used for github pagesLearn how to write stories here
MIT
FAQs
The scrabble board game written in React
The npm package react-scrabble receives a total of 12 weekly downloads. As such, react-scrabble popularity was classified as not popular.
We found that react-scrabble demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
AI-generated slop reports are making bug bounty triage harder, wasting maintainer time, and straining trust in vulnerability disclosure programs.
Research
Security News
The Socket Research team investigates a malicious Python package disguised as a Discord error logger that executes remote commands and exfiltrates data via a covert C2 channel.
Research
Socket uncovered npm malware campaign mimicking popular Node.js libraries and packages from other ecosystems; packages steal data and execute remote code.