Research
Security News
Kill Switch Hidden in npm Packages Typosquatting Chalk and Chokidar
Socket researchers found several malicious npm packages typosquatting Chalk and Chokidar, targeting Node.js developers with kill switches and data theft.
react-share-buttons
Advanced tools
一键分享到各大社交网站的react组件
支持微信二维码扫描
git clone https://github.com/DawnyWu/react-share-buttons.git
npm install
npm start
在浏览器中打开 http://localhost:3001 即可查看例子
<ShareButtons
sites = {["qzone", "weibo", "qq", "tencent", "wechat", "douban" ]}
url = "https://github.com/DawnyWu/react-share-buttons"
title = "react-share-buttons"
description = "一键分享到各大社交网站的react组件"
/>
sites : ["qzone", "weibo", "google", "twitter", "qq",
"tencent", "wechat", "douban", "linkedin", "facebook"], // 启用的站点
url : '', // 网址,默认使用 window.location.href
source : '', // 来源(QQ空间会用到), 默认读取head标签:<meta name="site" content="https://github.com/DawnyWu/react-share-buttons" />
title : '', // 标题,默认读取 document.title 或者 <meta name="title" content="react-share-buttons" />
description : '', // 描述, 默认读取head标签:<meta name="description" content="一键分享到各大社交网站的react组件" />
image : '', // 图片, 默认取网页中第一个img标签
wechatQrcodeTitle : '微信扫一扫:分享', // 微信二维码提示文字
wechatQrcodeHelper : '微信里点“发现”,扫一下二维码便可将本文分享至朋友圈'
MIT
FAQs
react-share-buttons === 一键分享到各大社交网站的react组件
The npm package react-share-buttons receives a total of 4 weekly downloads. As such, react-share-buttons popularity was classified as not popular.
We found that react-share-buttons demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers found several malicious npm packages typosquatting Chalk and Chokidar, targeting Node.js developers with kill switches and data theft.
Security News
pnpm 10 blocks lifecycle scripts by default to improve security, addressing supply chain attack risks but sparking debate over compatibility and workflow changes.
Product
Socket now supports uv.lock files to ensure consistent, secure dependency resolution for Python projects and enhance supply chain security.