Research
Security News
Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
A smart scrolling marquee for audio players and other text tickers.
Smarquee enables you to easily create a smooth, looping marquee without any hassle. Two lines of js is all it takes to create a marquee!
<div id="smarquee">A title that needs to loop</div>
let smarquee = new Smarquee();
smarquee.init();
Coming soon!
$ npm i smarquee
Then import into your javascript.
import Smarquee from 'smarquee';
Or include the minified script file in the dist folder. /dist/smarquee.min.js
.
Basic Setup This will initialize Smarquee with all default options. Options can be passed in through Smarquee's constructor.
<h2 id="smarquee">
The Entire World Is Counting On Me And They Don't Even Know It - Norma Jean
</h2>
let smarquee = new Smarquee(); // or new Smarquee({ OPTIONS });
smarquee.init();
Pass in options while instantiating a new Smarquee object.
let smarquee = new Smarquee({
selector: '#smarquee', // css selector used to grab the html element.
element: null, // you can select your own element and pass it in here.
// element supersedes the selector option.
velocity: 50 // A represntation of the animation speed.
// Lower is slower and higher is faster. How this affects the animation
// will depend on the length of content being scrolled.
styleOptions: {
scrollingTitleMargin: 24, // in pixels. This is the size of the margin
// between the original title and the duplicated title.
animationName: 'marquee', // change the generated animation name.
timingFunction: 'linear', // accepts values for the css property [animation-timing-function](https://developer.mozilla.org/en-US/docs/Web/CSS/animation-timing-function)
iterationCount: 'infinite', // accepts numbers or 'infinite'.
fillMode: 'none', // accepts none, forwards, backwards, or both.
playState: 'running', // set running or paused as the initial playstate of the animation.
delay: '0', // set delay for the start of the animation
pausePercent: 30, // for animations that iterate more than once, you can build in a pause
// this pause is activated at the end of the animation for X% of the remaining time in the
// animation. This is to allow the scrolled in title to be re-read before starting the
// animation over again. By default, this is set to 30% of the animation time.
// From 0% to 70%, Smarquee will animate, then pause for 30% before firing the
// onAnimationIteration() event.
},
// Events
onAnimationStart() {}, // fires at the start of the animation.
onAnimationEnd() {}, // fires when the animation is complete.
// Does not fire if iterationCount is infinite.
onAnimationIterate() {}, // fires when the animation iterates.
onAnimationCancel() {}, // fires when the animation is canceled. see [MDN](https://developer.mozilla.org/en-US/docs/Web/API/HTMLElement/animationcancel_event) for details. You may have issues getting this event to fire.
onClick() {} // fires when the marquee is clicked.
});
Smarquee objects have two classes added during init: .Smarquee
and .Smarquee--<ID>
. The id is uniquely generated to help namespace Smarquee's default styling. You may key off of these classes to customize instances of Smarquee.
Smarquee will not overwrite any existing classes that are already added to the element being used.
Smarquee measures the area and determines if a marquee is needed.
Unique identifier for Smarquee. This id is attached to the generated style for namespacing.
HTML object that the instance of Smarquee is attached to.
Generated inner HTML wrapper of the Smarquee HTML object.
Original InnerHTML of the HTML object the instance of Smarquee is attached to.
HTML reference to the generated styleBlock styling the instance of Smarquee.
JS object containing the various calculations required for animating Smarquee.
animationCalculations = {
distance: 0, // the width of the original content before init in pixels.
animatedDistance: 0, // the distance in pixels needed to animate.
time: 0 // as seconds. Calculated with distance and velocity.
};
Initializes a Smarquee instance. Accepts a boolean that will activate the animation automatically. Defaulted to true
.
Pauses the animation.
Plays the animation. Continues from where it left off from pause.
Restarts the animation. This will refire onAnimationStart()
.
removes the animated class to stop the animation completely.
Adds the animation class to restart the animation. This will refire onAnimationStart()
.
Update the text used in the Smarquee instance. This will deinit the instance, insert the new text, and reasses if a Smarquee is needed. If the available space can display the content completely, Smarquee will not animate. This will refire onAnimationStart()
.
delay
in milliseconds. Sets a delay before updateText
actually updates the text.
start
as boolean. Can be passed in to keep Smarquee from automatically starting the animation of the newly updated text.
Updates the number of iterations the animation will perform. Use 'infinite'
to loop indefinitely.
Updates the animation's fill mode property.
Updates the animation's delay property. This will only be a factor when an animation is starting for the first time. This value is not used in iterations.
Updates the animation's timing function.
Deinitializes the smarquee instance. The instance will require a call to init()
to restart.
No going back. The instance is completely destroyed. All html modifications and style blocks are removed. Content is returned to normal. a new Smarquee instance will need to be created.
Using Smarquee for a personal site or open source site is completely free forever.
To use Smarquee in a commercial project, please contact me for licensing options.
Please do! I'd love your help and ideas to make Smarquee even better. Please read CONTRIBUTING.md for more details.
MPL-2.0 © Buddy Reno
FAQs
A smart scrolling marquee for audio players and other scrolling text needs.
The npm package smarquee receives a total of 34 weekly downloads. As such, smarquee popularity was classified as not popular.
We found that smarquee demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Security News
MITRE's 2024 CWE Top 25 highlights critical software vulnerabilities like XSS, SQL Injection, and CSRF, reflecting shifts due to a refined ranking methodology.
Security News
In this segment of the Risky Business podcast, Feross Aboukhadijeh and Patrick Gray discuss the challenges of tracking malware discovered in open source softare.