
Security News
Federal Government Rescinds Software Supply Chain Mandates, Makes SBOMs Optional
The U.S. government is rolling back software supply chain mandates, shifting from mandatory SBOMs and attestations to a risk-based approach.
Core compiler for the rics CSS preprocessor. A fast, lightweight SCSS-like preprocessor that runs anywhere JavaScript runs.
npm install rics
import { compile } from "rics";
const css = compile(`
$primary: #f43f5e;
.button {
background: $primary;
&:hover {
background: darken($primary, 10%);
}
}
`);
Compiles rics/SCSS input to CSS.
const css = compile(input);
Returns full compilation result including errors, warnings, and stats.
const result = compileWithDetails(input);
console.log(result.css);
console.log(result.errors); // CompileError[]
console.log(result.warnings); // CompileWarning[]
console.log(result.stats); // { duration, rules, iterations, inputSize, outputSize }
Non-blocking compilation for large inputs.
const result = await compileAsync(largeStylesheet);
compile(input, {
timeout: 5000, // Max compilation time (ms)
maxIterations: 10000, // Max loop iterations
maxNestingDepth: 64, // Max selector nesting
minify: false, // Minify output
strictMode: false, // Throw on first error
});
& parent selector@function and @return@if, @else, @for, @each, @whiledarken, lighten, mix, saturate, and more#{}Auto-generated. Run
pnpm benchin the benchmarks folder to regenerate.
| Preprocessor | ops/sec | Comparison |
|---|---|---|
| rics | 897 | fastest |
| stylus | 334 | 2.7x slower |
| sass | 279 | 3.2x slower |
| less | 221 | 4.1x slower |
| Package | Size | Dependencies | Comparison |
|---|---|---|---|
| rics | 12.7 KB | 0 | smallest |
| less | 49.0 KB | 0 | 4x larger |
| stylus | 82.8 KB | 5 | 7x larger |
| sass | 686.0 KB | 1 | 54x larger |
MIT
Built by Better Lyrics
FAQs
Lightweight SCSS-like CSS preprocessor for browser/real-time use
We found that rics demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
The U.S. government is rolling back software supply chain mandates, shifting from mandatory SBOMs and attestations to a risk-based approach.

Security News
crates.io adds a Security tab backed by RustSec advisories and narrows trusted publishing paths to reduce common CI publishing risks.

Research
/Security News
A Chrome extension claiming to hide Amazon ads was found secretly hijacking affiliate links, replacing creators’ tags with its own without user consent.