
Security News
Axios Maintainer Confirms Social Engineering Attack Behind npm Compromise
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.
@gov.au/callout
Advanced tools
Use callout to notify and alert users of important snippets of information.
Use callout to notify and alert users of important snippets of information.
yarn add @gov.au/callout
npm install @gov.au/callout
Usage:
import { AUcallout, AUcalloutCalendar } from './callout.js';
<AUcallout title="Description for this callout">
AUcallout content
</AUcallout>
<AUcalloutCalendar
title="description for this callout"
datetime="2017-01-01T00:00:00+00:00"
time="Sunday 32 Jun"
subline="Your next appointment is"
name="Talk to boss"
/>
All props:
<AUcallout
title="Description for this callout" {/* The title is a must for screen readers */}
level={ 2 } {/* The tag level (<h1/> <h2/> etc), default: '1' */}
srOnlyTitle={ false } {/* Title is visible to screen readers only */}
attributeOptions {/* Any other attribute options */}
>
Callout content
</AUcallout>
<AUcalloutCalendar
title="description for this callout" {/* The title is a must for screen readers */}
level={ 2 } {/* The tag level (<h1/> <h2/> etc), default: '1' */}
srOnlyTitle={ true } {/* Title is visible to screen readers only */}
datetime="2017-01-01T00:00:00+00:00" {/* The date time string */}
time="Sunday 32 Jun" {/* The same date but human readable */}
subline="Your next appointment is" {/* Your subline, optional */}
name="Talk to boss" {/* The name of the event, optional */}
dark={ false } {/* A dark variation of the component */}
/>
(💡 additional props are spread onto the component)
For more details have a look at the usage example.
callout
└─ core
The visual test: https://auds.service.gov.au/packages/callout/tests/site/
margin-bottom, increase margin-top for paragraphs following calloutCopyright (c) Commonwealth of Australia. Licensed under MIT.
FAQs
Use callout to notify and alert users of important snippets of information.
The npm package @gov.au/callout receives a total of 72 weekly downloads. As such, @gov.au/callout popularity was classified as not popular.
We found that @gov.au/callout demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 4 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.

Security News
Node.js has paused its bug bounty program after funding ended, removing payouts for vulnerability reports but keeping its security process unchanged.

Security News
The Axios compromise shows how time-dependent dependency resolution makes exposure harder to detect and contain.