Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
react-within-viewport
Advanced tools
Debounced React high order component to flag when it's container is inside the viewport.
Debounced React high order component to flag when it's container is inside the viewport.
Let's build an example react component:
const Header = ({ style }) => (<h1 style={style}>Header</h1>)
And decorate:
import WithinViewport from 'react-within-viewport'
const Decorated = WithinViewport()(Header)
Now when you use <Decorated />
it will pass the boolean property inViewport
to Header
.
The passed prop is transformed by a function. You can use it to, for example, changing the prop name:
const Decorated = WithinViewport(
{ transform: ({ inViewport }) => ({ insideViewport: inViewport }) }
)(Header)
The property passed to the Header
would change to insideViewport
.
The transformation function also receives: containerWidth
, containerHeight
,
containerTopOffset
, containerLeftOffset
, windowWidth
, windowHeight
and ready
.
Ready is true when all positioning data are loaded.
You can also change the wrapper div style to meet your needs like:
const Decorated = WithinViewport(
{ containerStyle: { display: 'inline-block' } }
)(Header)
First of all, thank you for wanting to help!
git checkout -b more_magic
npm test
git commit -am "Added more magic"
git push origin more_magic
FAQs
Debounced React high order component to flag when it's container is inside the viewport.
The npm package react-within-viewport receives a total of 14 weekly downloads. As such, react-within-viewport popularity was classified as not popular.
We found that react-within-viewport demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 4 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.