
Research
Security News
Lazarus Strikes npm Again with New Wave of Malicious Packages
The Socket Research Team has discovered six new malicious npm packages linked to North Korea’s Lazarus Group, designed to steal credentials and deploy backdoors.
stylelint-config-firefoxic
Advanced tools
Stylelint shareable config for the firefoxic code guide
The shareable config for Stylelint from firefoxic.
Use it as is or as a foundation for your own config.
To see the rules that this config uses, please read the config itself.
npm i -D stylelint-config-firefoxic
Set your stylelint
config to:
{
"extends": "stylelint-config-firefoxic"
}
Or specify an absolute path when installing the package globally.
{
"extends": "/absolute/path/to/stylelint-config-firefoxic"
}
Add a "rules"
key to your config, then add your overrides and additions there.
You can turn off rules by setting its value to null
. For example:
{
"extends": "stylelint-config-firefoxic",
"rules": {
"selector-not-notation": null
}
}
Or lower the severity of a rule to a warning using the severity
secondary option. For example:
{
"extends": "stylelint-config-firefoxic",
"rules": {
"property-no-vendor-prefix": [
true,
{
"severity": "warning"
}
]
}
}
If your styles syntax is different from CSS, then install the package of the syntax you need, specify it at the beginning of your configuration file and add or override some rules:
{
"customSyntax": "postcss-scss",
"extends": "stylelint-config-firefoxic",
"rules": {
"at-rule-no-unknown": [
true,
{
"ignoreAtRules": [
"mixin",
"include"
]
}
]
}
}
npm i -g stylelint
npm i -D stylelint
stylelint-config-firefoxic
rules will be underlined with a red wavy line.FAQs
Stylelint shareable config for the firefoxic code guide
We found that stylelint-config-firefoxic demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
The Socket Research Team has discovered six new malicious npm packages linked to North Korea’s Lazarus Group, designed to steal credentials and deploy backdoors.
Security News
Socket CEO Feross Aboukhadijeh discusses the open web, open source security, and how Socket tackles software supply chain attacks on The Pair Program podcast.
Security News
Opengrep continues building momentum with the alpha release of its Playground tool, demonstrating the project's rapid evolution just two months after its initial launch.