Skip to content
Closed
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
256 commits
Select commit Hold shift + click to select a range
d280e20
ibm watson widget
kevalvegeto Nov 16, 2018
35f68c5
Revert "ibm watson widget"
Nov 16, 2018
630f9bc
optimizely experiments
kevalvegeto Dec 7, 2018
74570ac
Merge
kevalvegeto Dec 7, 2018
6f1837e
google analytics dashboard widget
kevalvegeto Apr 5, 2019
bd91941
update sdk link
kevalvegeto Apr 5, 2019
7efeaba
update guide link
kevalvegeto Apr 5, 2019
2daddd8
update external api lookup readme
kevalvegeto May 27, 2019
a1dbbec
Fix: Ace Editor Auto Inline Bug
kevalvegeto Jun 7, 2019
70fd823
fix brightcove extension pagination issue
kevalvegeto Nov 21, 2019
77f0667
fix brightcove extension
kevalvegeto Dec 20, 2019
8be0f23
Fix brightcove thumbnail loading
kevalvegeto Dec 21, 2019
e3f38aa
Update README.md
Jul 14, 2020
b292b96
added clear field option in form
amit-kanswal-cs Apr 15, 2021
12c7eb5
added eslint and license file
amit-kanswal-cs Apr 15, 2021
ad23c05
Merge pull request #17 from contentstack/extension/marketo
Amitkanswal Apr 16, 2021
44dd3e2
fix:added script tag in index.html [CS-16476]
abhishek305 Jul 8, 2021
6999792
chore:updated package.json file
abhishek305 Jul 8, 2021
5bcd46f
chore : updated extension version [CS-16476]
abhishek305 Jul 12, 2021
e9ddacb
Merge pull request #23 from contentstack/fix/CS-16476_added_script_ta…
kego1992 Jul 12, 2021
b80375d
feat:added youtube extension [CS-11918]
amit-kanswal-cs Jul 12, 2021
449d37b
feat:added youtube extension [CS-11918]
amit-kanswal-cs Jul 12, 2021
5a510fe
Merge pull request #24 from contentstack/feat/CS-11109_added_youtube_…
kego1992 Jul 12, 2021
68d56b5
feat: added react ui ux [CS-18183]
amit-kanswal-cs Aug 23, 2021
251a8e3
feat:updated brightcove popup code [CS_18183]
amit-kanswal-cs Aug 24, 2021
30cab67
docs: updated readme and license [CS-18183]
amit-kanswal-cs Aug 25, 2021
123b043
fix: code review changes [CS-18183]
amit-kanswal-cs Aug 25, 2021
b5392b4
fix: updated review changes [CS-18183]
amit-kanswal-cs Aug 25, 2021
2605554
Merge pull request #28 from contentstack/feat/CS-18183_added_react_co…
Amitkanswal Aug 25, 2021
2dbc837
fix:vulnerabilities fixes [CS-16657]
amit-kanswal-cs Aug 31, 2021
9334dfe
fix:added thumbnail for unsported urls [CS-18183]
amit-kanswal-cs Aug 31, 2021
4b30b3a
fix:added thumbnail for unsported urls [CS-18183]
amit-kanswal-cs Aug 31, 2021
455743e
fix:updated version and License [CS-16657]
amit-kanswal-cs Aug 31, 2021
b887c35
fix:review changes and added spport for undefined images in home.tsx[…
amit-kanswal-cs Sep 2, 2021
6836556
fix:review changes [CS-18183]
amit-kanswal-cs Sep 2, 2021
e5621b0
fix:review changes [CS-18183]
amit-kanswal-cs Sep 2, 2021
a2480bd
Merge pull request #30 from contentstack/feat/CS-18183_added_react_co…
Amitkanswal Sep 2, 2021
efdd863
fix: bugfix for refresh btn and search bar[CS-18183]
amit-kanswal-cs Sep 2, 2021
4e667d8
fix: resolved issue in count [CS-18183]
amit-kanswal-cs Sep 2, 2021
324b751
fix: resolved count issue for search bar [CS-18183]
amit-kanswal-cs Sep 2, 2021
412b53a
fix:bufix for save multiple videos [CS-19035]
amit-kanswal-cs Sep 3, 2021
8f76d84
fix:review changes [CS-16657]
amit-kanswal-cs Sep 3, 2021
d21e034
fix: review fixes [CS-18183]
amit-kanswal-cs Sep 6, 2021
e4b8986
fix: code review chages [CS-18183]
amit-kanswal-cs Sep 6, 2021
4c280d7
fix: updated dependency in text intelligence [CS-19089]
amit-kanswal-cs Sep 6, 2021
2a2b075
fix: code review fixes [CS-18183]
amit-kanswal-cs Sep 6, 2021
5a7cbf7
Merge pull request #32 from contentstack/feat/CS-18183_added_react_co…
kego1992 Sep 7, 2021
1f3b9a9
fix:dependency check for brightcove [CS-16657]
amit-kanswal-cs Sep 7, 2021
b1b5efd
Merge pull request #31 from contentstack/fix/CS-16657_dependency_checks
Amitkanswal Sep 7, 2021
b900d5d
fix: added ooyala extension and updated readme [CS-16657]
amit-kanswal-cs Sep 7, 2021
f4fd055
fix: updated ooyala license [CS-16657]
amit-kanswal-cs Sep 7, 2021
4abb759
Merge pull request #33 from contentstack/fix/CS-16657_added_ooyala_ex…
Amitkanswal Sep 8, 2021
2a1832c
Create CODEOWNERS
nandeesh-gajula Sep 21, 2021
e4dcf25
fix/resolved broken asset link bug [CS-19438]
amit-kanswal-cs Sep 22, 2021
1a65854
fix:code review changes [CS-19438]
amit-kanswal-cs Sep 22, 2021
98abdf4
Merge pull request #34 from contentstack/fix/CS-19438_resolved_broken…
kego1992 Sep 23, 2021
d52cc7e
fix:added ace editor with css fix [CS-19438]
amit-kanswal-cs Sep 29, 2021
ee57e74
fix:added review changes [CS-19438]
amit-kanswal-cs Sep 29, 2021
760c7e2
Merge pull request #35 from contentstack/fix/CS-19438_resolved_broken…
kego1992 Sep 30, 2021
b4aadfe
Merge pull request #36 from contentstack/staging
kego1992 Oct 5, 2021
103dc70
add: JSON RTE Plugins
RavenColEvol Jan 24, 2022
971acd1
fix: code smell issues for rte plugins
RavenColEvol Jan 27, 2022
245c94c
fix: manual review changes
RavenColEvol Jan 27, 2022
b579a2b
add: await to sdk locations
RavenColEvol Jan 30, 2022
c2b7e37
fix: vulnerabilites of rte extensions
RavenColEvol Feb 7, 2022
e1ad34a
Merge pull request #37 from contentstack/json-rte-plugin
RavenColEvol Feb 10, 2022
797569c
feat: add content type visualizer extension [ECO-656]
karantalapalli Mar 10, 2022
8be42a5
feat: add content type visualizer extension and updated readme [ECO-656]
karantalapalli Mar 10, 2022
13977c4
feat: add content type visualizer extension and updated readme [ECO-656]
karantalapalli Mar 10, 2022
4d6233c
feat: add conten type visualizer extension and update readme [ECO-656]
karantalapalli Mar 11, 2022
8bf7891
feat: update content type visualizer readme [ECO-656]
karantalapalli Mar 11, 2022
9064486
feat: add developer tools extension and update readme [ECO-656]
karantalapalli Mar 11, 2022
77b55b2
fix:resolve issue with form clearing [ECO-780]
amit-kanswal-cs Mar 14, 2022
f485884
fix:resolved issue while publishing form [ECO-792]
amit-kanswal-cs Mar 17, 2022
4a24dab
fix:removed logs [ECO-792]
amit-kanswal-cs Mar 17, 2022
3ddc1aa
Merge pull request #51 from contentstack/fix/ECO-780_marketo-forms
Amitkanswal Mar 17, 2022
b129085
fix: json editor validate json format [ECO-418]
karantalapalli Mar 22, 2022
855be78
Merge branch 'master' into staging
amit-kanswal-cs Mar 30, 2022
e6ab48e
fix: added script tags with integrity value
amit-kanswal-cs Mar 30, 2022
6f20347
Merge pull request #56 from contentstack/staging
Amitkanswal Mar 30, 2022
ebc58de
Merge pull request #52 from contentstack/fix/ECO-418_json_editor_vali…
karantalapalli Apr 12, 2022
aaa0bdc
Merge pull request #65 from contentstack/staging
karantalapalli Apr 12, 2022
bc0d451
added cdn url and integrity for scripts
karantalapalli Apr 15, 2022
664b261
fix: added integrity to cdn urls and updated asset stack for objc.js
karantalapalli Apr 21, 2022
7923ac3
fix: updated package version on package.json
karantalapalli Apr 21, 2022
d6bf483
fix: readme conflict
karantalapalli Apr 21, 2022
919db5b
Merge pull request #49 from contentstack/feat/ECO-656_add_content_typ…
karantalapalli May 2, 2022
7369df0
Merge pull request #50 from contentstack/feat/ECO-656_add_developer_t…
karantalapalli May 2, 2022
bc3a9e0
Merge pull request #74 from contentstack/staging
karantalapalli May 5, 2022
dd06d25
added variable and audience apps
Ashwini1997727 Jun 6, 2022
fcdb5e2
made reviw changes
Ashwini1997727 Jun 7, 2022
2636e81
Merge pull request #77 from contentstack/rte-apps
Ashwini-Rathod Jun 13, 2022
59c9330
added homepage to package.json
Ashwini1997727 Jun 13, 2022
8f0929d
Merge pull request #86 from contentstack/rte-apps
Ashwini-Rathod Jun 14, 2022
c9c9434
Create codeql-analysis.yml
contentstack-admin Jun 14, 2022
06e9508
Add files via upload
contentstack-admin Jun 14, 2022
a6f95f6
Delete sca-monitor.yml
Aravind-Kumar-cstk Sep 15, 2022
f5f1fb1
codeql-analysis.yml
Aravind-Kumar-cstk Sep 15, 2022
a9923b6
sast-scan.yml
Aravind-Kumar-cstk Sep 15, 2022
f7087fe
sca-scan.yml
Aravind-Kumar-cstk Sep 15, 2022
c8e2338
secrets-scan.yml
Aravind-Kumar-cstk Sep 15, 2022
e10afa1
codeql-analysis.yml
Aravind-Kumar-cstk Sep 21, 2022
fe33d3d
sast-scan.yml
Aravind-Kumar-cstk Sep 21, 2022
4f356de
sca-scan.yml
Aravind-Kumar-cstk Sep 21, 2022
2398a50
secrets-scan.yml
Aravind-Kumar-cstk Sep 21, 2022
49115c0
jira.yml
Aravind-Kumar-cstk Oct 3, 2022
4453bbd
jira.yml
Aravind-Kumar-cstk Oct 4, 2022
30bbaea
jira.yml
Aravind-Kumar-cstk Nov 4, 2022
0d32043
sca-scan.yml
Aravind-Kumar-cstk Jan 24, 2023
3689d92
jira.yml
Aravind-Kumar-cstk Jan 24, 2023
6b94978
codeql-analysis.yml
Aravind-Kumar-cstk Jan 24, 2023
26cdeca
sast-scan.yml
Aravind-Kumar-cstk Jan 24, 2023
0c46574
secrets-scan.yml
Aravind-Kumar-cstk Jan 24, 2023
154fd72
CODEOWNERS update
Aravind-Kumar-cstk May 6, 2023
d172130
sca-scan.yml
Aravind-Kumar-cstk Sep 5, 2023
0299ae1
jira.yml
Aravind-Kumar-cstk Sep 5, 2023
3a92241
Delete sast-scan.yml
Aravind-Kumar-cstk Sep 5, 2023
088d7d8
Delete secrets-scan.yml
Aravind-Kumar-cstk Sep 5, 2023
1313e41
codeql-analysis.yml
Aravind-Kumar-cstk Sep 5, 2023
d75db05
sca-scan.yml
Aravind-Kumar-cstk Jun 18, 2024
f8820d6
jira.yml
Aravind-Kumar-cstk Jun 18, 2024
72ecdd5
sast-scan.yml
Aravind-Kumar-cstk Jun 18, 2024
4cd612c
codeql-analysis.yml
Aravind-Kumar-cstk Jun 18, 2024
252e072
sca-scan.yml
Aravind-Kumar-cstk Oct 22, 2024
da4e9db
jira.yml
Aravind-Kumar-cstk Oct 22, 2024
550174c
sast-scan.yml
Aravind-Kumar-cstk Oct 22, 2024
9ce1c94
codeql-analysis.yml
Aravind-Kumar-cstk Oct 22, 2024
2ad688b
Updated codeowners
Aravind-Kumar-cstk Oct 22, 2024
13b4bc9
sca-scan.yml
Aravind-Kumar-cstk Jan 19, 2025
577b3b0
jira.yml
Aravind-Kumar-cstk Jan 19, 2025
664f8f2
sast-scan.yml
Aravind-Kumar-cstk Jan 19, 2025
c410051
codeql-analysis.yml
Aravind-Kumar-cstk Jan 19, 2025
5959fe5
Updated codeowners
Aravind-Kumar-cstk Jan 19, 2025
9f50062
policy-scan.yml
Aravind-Kumar-cstk Apr 16, 2025
d29a07b
issues-jira.yml
Aravind-Kumar-cstk Apr 16, 2025
669d8fa
Delete jira.yml
Aravind-Kumar-cstk Apr 16, 2025
6c20e6d
Delete sast-scan.yml
Aravind-Kumar-cstk Apr 16, 2025
c7fd90c
codeql-analysis.yml
Aravind-Kumar-cstk Apr 16, 2025
2ea6d64
Updated codeowners
Aravind-Kumar-cstk Apr 16, 2025
4979619
policy-scan.yml
Aravind-Kumar-cstk Apr 23, 2025
4fbf4d6
policy-scan.yml
Aravind-Kumar-cstk May 6, 2025
3302092
issues-jira.yml
Aravind-Kumar-cstk May 6, 2025
3b6c5e3
secrets-scan.yml
Aravind-Kumar-cstk May 6, 2025
7cb2d49
talismanrc file updated
Aravind-Kumar-cstk May 6, 2025
ff6c065
Updated codeowners
Aravind-Kumar-cstk May 6, 2025
961a535
Delete secrets-scan.yml
Aravind-Kumar-cstk Sep 8, 2025
78b8328
Updated codeowners
Aravind-Kumar-cstk Sep 8, 2025
7bb210d
extensions | youtube | replace webpack with vite
saisanthoshpentakota Dec 17, 2025
3307185
extensions | variable-app | upgrade venus-components & replace react-…
saisanthoshpentakota Dec 17, 2025
139d1bc
fix snyk issues fixes with vite migration
anupsingh244 Dec 17, 2025
3e90fb6
extensions | json-editor | replace gulp with vite
saisanthoshpentakota Dec 17, 2025
c9ddbf5
Fix broken link in README
suvish-cstk Dec 17, 2025
e5564a7
Fix vulnerabilities in highlight and upgrade venus components and react
suvish-cstk Dec 17, 2025
261c027
Fix typo in highlight CSS so that it highlights the text
suvish-cstk Dec 17, 2025
863606f
extensions | variable-app | Upgrade venus components
saisanthoshpentakota Dec 17, 2025
882d1da
extensions | word-count | upgrade venus components to fix snyk issues
saisanthoshpentakota Dec 17, 2025
5795f79
extensions | word-count | update Readme to include correct docs url
saisanthoshpentakota Dec 17, 2025
6b40af3
info-panel: snyk fix and css dix
anupsingh244 Dec 18, 2025
52b3d7a
lambda: snyk fixes
anupsingh244 Dec 18, 2025
58a225d
npm audit fix for brightcove apps
anupsingh244 Dec 19, 2025
d4b856e
npm audit fix for info-panel
anupsingh244 Dec 19, 2025
be6acf0
npm audit fix for test-intelligence
anupsingh244 Dec 19, 2025
cd860fd
npm audit fix for youtube/youtube-extension-popup
anupsingh244 Dec 19, 2025
ea1a7f0
Fix google-analytics vulnerabilities
suvish-cstk Dec 19, 2025
1b769af
Fixed dashboard-widget-google-analytics vulnerabilties
suvish-cstk Dec 19, 2025
c27709c
Fix vulnerabilities in content-type-visualiser
suvish-cstk Dec 19, 2025
81557e8
optimizelt audit fix
anupsingh244 Dec 19, 2025
968ba07
fix audit issue for opimize-experiments ext
anupsingh244 Dec 19, 2025
b8e91a1
fix marketo-forms and dashboard-widget-google-analytics audit issues
anupsingh244 Dec 19, 2025
753404d
audience app package upgrades
anupsingh244 Dec 19, 2025
aba252e
fix: remove audience plugin folder; extracted to a separate open-sour…
PriteshJain Dec 19, 2025
35f5cf0
fix: resolve npm audit security vulnerabilities
PriteshJain Dec 23, 2025
67b4e7a
fix: resolve npm audit vulnerabilities and upgrade to Vite 7
PriteshJain Dec 23, 2025
07259ef
Merge pull request #575 from contentstack/fix/snyk-fixes-dec-25
pritesh-jain-cstk Dec 23, 2025
49f1e43
chore: fix npm security vulnerabilities across 18 packages
rahul-contentstack Feb 13, 2026
2782c03
fix: fixed issue with hardcoded url and invalid jquery
rahul-contentstack Feb 16, 2026
118e622
chore: updated highlight plugin
rahul-contentstack Feb 16, 2026
477ba54
chore: info panel update
rahul-contentstack Feb 16, 2026
5152bba
fix: jsoneditor not saving value
rahul-contentstack Feb 16, 2026
f97c54d
fix: removed ooyala extension as ooyala platform does not exist now.
rahul-contentstack Feb 16, 2026
8a7aa0f
chore: fixed snyk issues in word-count
rahul-contentstack Feb 16, 2026
e4df571
fix: youtube extension build
rahul-contentstack Feb 16, 2026
b1ff2df
Merge pull request #592 from contentstack/chore/snyk-fix-13-02-2026
rahul-contentstack Feb 17, 2026
8d76817
Update sca-scan.yml
dhavaljain999 Feb 28, 2026
c76c293
sca-scan.yml
Aravind-Kumar-cstk Mar 31, 2026
40bff7c
policy-scan.yml
Aravind-Kumar-cstk Mar 31, 2026
ff46324
issues-jira.yml
Aravind-Kumar-cstk Mar 31, 2026
c679901
Updated codeowners
Aravind-Kumar-cstk Mar 31, 2026
f8265ae
chore: fixed snyk issues
rahul-contentstack Apr 2, 2026
ebccff7
chore: updated license
rahul-contentstack Apr 2, 2026
9376129
chore: updated license
rahul-contentstack Apr 2, 2026
e74c18a
chore: fixed snyk issue
rahul-contentstack Apr 2, 2026
e7ccc38
chore: added security and license
rahul-contentstack Apr 2, 2026
03922ba
Merge pull request #633 from contentstack/chore/snyk-fix
rahul-contentstack Apr 2, 2026
84af871
issues-jira.yml
Aravind-Kumar-cstk Jun 19, 2026
1e34416
Delete .github/workflows/issues-jira.yml
Aravind-Kumar-cstk Jun 30, 2026
e806a18
sca-scan.yml
Aravind-Kumar-cstk Aug 2, 2026
3f147ef
fix(snyk): axios — pin transitive axios to ^1.18.0 via overrides (1.1…
claude Aug 6, 2026
799e0a7
fix(snyk): brace-expansion — override to ^2.1.4 (2.0.3 -> 2.1.4)
claude Aug 6, 2026
c9fa31c
fix(snyk): dompurify — override to ^3.4.12 (3.3.3 -> 3.4.12)
claude Aug 6, 2026
0982b9f
fix(snyk): js-cookie — override to ^3.0.7 (3.0.5 -> 3.0.7)
claude Aug 6, 2026
da1ca5b
fix(snyk): uuid — override to ^11.1.1 (8.3.2 -> 11.1.1) [major]
claude Aug 6, 2026
bb91d53
fix(snyk): follow-redirects — override to ^1.16.0 (1.15.11 -> 1.16.0)
claude Aug 6, 2026
2a04395
fix(snyk): form-data — override to ^4.0.6 (4.0.5 -> 4.0.6)
claude Aug 6, 2026
caa3781
fix(snyk): react-router — react-router-dom 6.30.3 -> 7.18.0 (SNYK-JS-…
claude Aug 6, 2026
6101ae0
fix(snyk): axios — override to ^1.18.0 (1.13.5 -> 1.18.0)
claude Aug 6, 2026
b90f426
fix(snyk): brace-expansion — override to ^2.1.4 (2.0.3 -> 2.1.4)
claude Aug 6, 2026
71e8e82
fix(snyk): dompurify — override to ^3.4.12 (3.3.3 -> 3.4.12)
claude Aug 6, 2026
da78d04
fix(snyk): follow-redirects — override to ^1.16.0 (1.15.11 -> 1.16.0)
claude Aug 6, 2026
53aa373
fix(snyk): form-data — override to ^4.0.6 (4.0.5 -> 4.0.6)
claude Aug 6, 2026
a4fabd8
fix(snyk): js-cookie — override to ^3.0.7 (3.0.5 -> 3.0.7)
claude Aug 6, 2026
026b74e
fix(snyk): qs — override to ^6.15.2 (6.14.2 -> 6.15.2)
claude Aug 6, 2026
df42457
fix(snyk): uuid — override to ^11.1.1 (8.3.2 -> 11.1.1 [major])
claude Aug 6, 2026
b9a673d
fix(snyk): axios — override to ^1.18.0 (1.13.5 -> 1.18.0)
claude Aug 6, 2026
c27720d
fix(snyk): brace-expansion — override to ^2.1.4 (2.0.3 -> 2.1.4)
claude Aug 6, 2026
5c8a56f
fix(snyk): dompurify — override to ^3.4.12 (3.3.3 -> 3.4.12)
claude Aug 6, 2026
3e2e6df
fix(snyk): follow-redirects — override to ^1.16.0 (1.15.11 -> 1.16.0)
claude Aug 6, 2026
f1d3823
fix(snyk): form-data — override to ^4.0.6 (4.0.5 -> 4.0.6)
claude Aug 6, 2026
69bbd83
fix(snyk): js-cookie — override to ^3.0.7 (3.0.5 -> 3.0.7)
claude Aug 6, 2026
cb43512
fix(snyk): uuid — override to ^11.1.1 (8.3.2 -> 11.1.1 [major])
claude Aug 6, 2026
0cfd793
fix(snyk): axios — override to ^1.18.0 (1.13.5 -> 1.18.0)
claude Aug 6, 2026
dc2594a
fix(snyk): brace-expansion — override to ^2.1.4 (2.0.3 -> 2.1.4)
claude Aug 6, 2026
77581f6
fix(snyk): dompurify — override to ^3.4.12 (3.3.3 -> 3.4.12)
claude Aug 6, 2026
2ad7011
fix(snyk): follow-redirects — override to ^1.16.0 (1.15.11 -> 1.16.0)
claude Aug 6, 2026
70c784e
fix(snyk): form-data — override to ^4.0.6 (4.0.5 -> 4.0.6)
claude Aug 6, 2026
15fcc8f
fix(snyk): js-cookie — override to ^3.0.7 (3.0.5 -> 3.0.7)
claude Aug 6, 2026
4c7dd1d
fix(snyk): uuid — override to ^11.1.1 (8.3.2 -> 11.1.1 [major])
claude Aug 6, 2026
e94f0d5
fix(snyk): axios — 1.13.5 -> 1.18.0 (direct dependency)
claude Aug 6, 2026
7f68cbd
fix(snyk): follow-redirects — override to ^1.16.0 (1.15.11 -> 1.16.0)
claude Aug 6, 2026
7b1b6d3
fix(snyk): form-data — override to ^4.0.6 (4.0.5 -> 4.0.6)
claude Aug 6, 2026
a827fc6
fix(snyk): axios — 1.13.5 -> 1.18.0 (direct dependency)
claude Aug 6, 2026
57b778d
fix(snyk): follow-redirects — override to ^1.16.0 (1.15.11 -> 1.16.0)
claude Aug 6, 2026
f85b911
fix(snyk): form-data — override to ^4.0.6 (4.0.5 -> 4.0.6)
claude Aug 6, 2026
87b88dd
fix(snyk): axios — 1.13.5 -> 1.18.0 (direct dependency)
claude Aug 6, 2026
4bae06c
fix(snyk): follow-redirects — override to ^1.16.0 (1.15.11 -> 1.16.0)
claude Aug 6, 2026
da834f5
fix(snyk): form-data — override to ^4.0.6 (4.0.5 -> 4.0.6)
claude Aug 6, 2026
65175d7
fix(snyk): axios — 1.13.5 -> 1.18.0 (direct dependency)
claude Aug 6, 2026
3c69ead
fix(snyk): follow-redirects — override to ^1.16.0 (1.15.11 -> 1.16.0)
claude Aug 6, 2026
2c0caf0
fix(snyk): form-data — override to ^4.0.6 (4.0.5 -> 4.0.6)
claude Aug 6, 2026
20d94ba
fix(snyk): axios — 1.13.5 -> 1.18.0 (direct dependency)
claude Aug 6, 2026
abee4c4
fix(snyk): follow-redirects — override to ^1.16.0 (1.15.11 -> 1.16.0)
claude Aug 6, 2026
091119e
fix(snyk): form-data — override to ^4.0.6 (4.0.5 -> 4.0.6)
claude Aug 6, 2026
6790d93
fix(snyk): brace-expansion — override to ^2.1.4 in google-analytics/l…
claude Aug 6, 2026
a1ec3d9
fix(snyk): qs — override to ^6.15.2 in google-analytics/lambda (6.14.…
claude Aug 6, 2026
9632ab9
fix(snyk): brace-expansion — override to ^2.1.4 in dashboard-widget-g…
claude Aug 6, 2026
0a1aa33
fix(snyk): qs — override to ^6.15.2 in dashboard-widget-google-analyt…
claude Aug 6, 2026
6defc52
chore(snyk): pin dompurify override to exact 3.4.12 (3.4.13 is <7 day…
claude Aug 6, 2026
803c143
chore(snyk): pin dompurify override to exact 3.4.12 (3.4.13 is <7 day…
claude Aug 6, 2026
21b0ce9
chore(snyk): pin dompurify override to exact 3.4.12 (3.4.13 is <7 day…
claude Aug 6, 2026
da8d408
chore(snyk): pin dompurify override to exact 3.4.12 (3.4.13 is <7 day…
claude Aug 6, 2026
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
The table of contents is too big for display.
Diff view
Diff view
  •  
  •  
  •  
68 changes: 68 additions & 0 deletions .github/workflows/codeql-analysis.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,68 @@
# For most projects, this workflow file will not need changing; you simply need
# to commit it to your repository.
#
# You may wish to alter this file to override the set of languages analyzed,
# or to provide custom queries or build logic.
#
# ******** NOTE ********
# We have attempted to detect the languages in your repository. Please check
# the `language` matrix defined below to confirm you have the correct set of
# supported CodeQL languages.
#
name: "CodeQL"

on:
pull_request:
# The branches below must be a subset of the branches above
branches: '*'

jobs:
analyze:
name: Analyze
runs-on: ubuntu-latest
permissions:
actions: read
contents: read
security-events: write

strategy:
fail-fast: false
matrix:
language: [ 'javascript' ]
# CodeQL supports [ 'cpp', 'csharp', 'go', 'java', 'javascript', 'python', 'ruby' ]
# Learn more about CodeQL language support at https://aka.ms/codeql-docs/language-support

steps:
- name: Checkout repository
uses: actions/checkout@v3

# Initializes the CodeQL tools for scanning.
- name: Initialize CodeQL
uses: github/codeql-action/init@v2
with:
languages: ${{ matrix.language }}
# If you wish to specify custom queries, you can do so here or in a config file.
# By default, queries listed here will override any specified in a config file.
# Prefix the list here with "+" to use these queries and those in the config file.

# Details on CodeQL's query packs refer to : https://docs.github.com/en/code-security/code-scanning/automatically-scanning-your-code-for-vulnerabilities-and-errors/configuring-code-scanning#using-queries-in-ql-packs
# queries: security-extended,security-and-quality


# Autobuild attempts to build any compiled languages (C/C++, C#, or Java).
# If this step fails, then you should remove it and run the build manually (see below)
- name: Autobuild
uses: github/codeql-action/autobuild@v2

# ℹ️ Command-line programs to run using the OS shell.
# 📚 See https://docs.github.com/en/actions/using-workflows/workflow-syntax-for-github-actions#jobsjob_idstepsrun

# If the Autobuild fails above, remove it and uncomment the following three lines.
# modify them (or add more) to build your code if your project, please refer to the EXAMPLE below for guidance.

# - run: |
# echo "Run, Build Application using script"
# ./location_of_script_within_repo/buildscript.sh

- name: Perform CodeQL Analysis
uses: github/codeql-action/analyze@v2
46 changes: 46 additions & 0 deletions .github/workflows/policy-scan.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,46 @@
name: Checks the security policy and configurations
on:
pull_request:
types: [opened, synchronize, reopened]
jobs:
security-policy:
if: github.event.repository.visibility == 'public'
runs-on: ubuntu-latest
defaults:
run:
shell: bash
steps:
- uses: actions/checkout@master
- name: Checks for SECURITY.md policy file
run: |
if ! [[ -f "SECURITY.md" || -f ".github/SECURITY.md" ]]; then exit 1; fi
security-license:
if: github.event.repository.visibility == 'public'
runs-on: ubuntu-latest
defaults:
run:
shell: bash
steps:
- uses: actions/checkout@master
- name: Checks for License file
run: |
expected_license_files=("LICENSE" "LICENSE.txt" "LICENSE.md" "License.txt")
license_file_found=false
current_year=$(date +"%Y")

for license_file in "${expected_license_files[@]}"; do
if [ -f "$license_file" ]; then
license_file_found=true
# check the license file for the current year, if not exists, exit with error
if ! grep -q "$current_year" "$license_file"; then
echo "License file $license_file does not contain the current year."
exit 2
fi
break
fi
done

if [ "$license_file_found" = false ]; then
echo "No license file found. Please add a license file to the repository."
exit 1
fi
21 changes: 21 additions & 0 deletions .github/workflows/sca-scan.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,21 @@
name: Source Composition Analysis Scan
on:
pull_request:
types: [opened, synchronize, reopened]
jobs:
security-sca:
runs-on: ubuntu-latest
permissions:
contents: read
pull-requests: write
steps:
- uses: actions/checkout@master
- name: Run Snyk to check for vulnerabilities
uses: snyk/actions/node@master
env:
SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }}
with:
args: --all-projects --fail-on=all
json: true
continue-on-error: true
- uses: contentstack/sca-policy@main
25 changes: 24 additions & 1 deletion .gitignore
Original file line number Diff line number Diff line change
@@ -1 +1,24 @@
**/**/node_modules/*
### react ###
.DS_*
*.log
logs
**/*.backup.*
**/*.back.*

node_modules
bower_components

*.sublime*

psd
thumb
sketch

### npm audit reports ###
npm_audit_consolidated_report.txt
npm_audit_report*.txt
npm_audit*.txt

### scripts ###
npm_audit_all.sh
npm_audit*.sh
5 changes: 5 additions & 0 deletions .talismanrc
Original file line number Diff line number Diff line change
@@ -0,0 +1,5 @@
fileignoreconfig:
- filename: .github/workflows/secrets-scan.yml
ignore_detectors:
- filecontent
version: "1.0"
11 changes: 11 additions & 0 deletions CODEOWNERS
Original file line number Diff line number Diff line change
@@ -0,0 +1,11 @@
* @contentstack/marketplace-solutions-pr-reviewers

.github/workflows/sca-scan.yml @contentstack/security-admin

.github/workflows/codeql-anaylsis.yml @contentstack/security-admin

**/.snyk @contentstack/security-admin

.github/workflows/policy-scan.yml @contentstack/security-admin

.github/workflows/issues-jira.yml @contentstack/security-admin
21 changes: 21 additions & 0 deletions LICENSE
Original file line number Diff line number Diff line change
@@ -0,0 +1,21 @@
MIT License

Copyright (c) 2026 Contentstack

Permission is hereby granted, free of charge, to any person obtaining a copy
of this software and associated documentation files (the "Software"), to deal
in the Software without restriction, including without limitation the rights
to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
copies of the Software, and to permit persons to whom the Software is
furnished to do so, subject to the following conditions:

The above copyright notice and this permission notice shall be included in all
copies or substantial portions of the Software.

THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE
AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
SOFTWARE.
87 changes: 68 additions & 19 deletions README.md
Original file line number Diff line number Diff line change
@@ -1,52 +1,101 @@
***REMOVED***Contentstack Extensions
# Contentstack Extensions

Contentstack provides Extensions that let you extend its UI. It provides two types of extensions: Custom Fields and Custom Widgets.
Contentstack provides Extensions that let you extend its UI. It provides four types of extensions: Custom Fields, Custom Widgets, Dashboard Widgets and JSON RTE Plugin.

The **Custom Fields** extension lets you create custom fields that you can use in your content types, such as a color picker, code editor, video selector, and more. The **Custom Widgets** extension lets you add widgets that help you analyze the content of an entry and recommend content ideas. Examples of custom widgets are SEO recommendations, sentiment analysis, and content translation in different languages.
The **Custom Fields** extension lets you create custom fields that you can use in your content types, such as a color picker, code editor, video selector, and more.

This is a repository of example extensions created using Contentstack’s [Extensions SDK](https://github.com/contentstack/ui-extensions-sdk).
The **Custom Widgets** extension lets you add widgets that help you analyze the content of an entry and recommend content ideas. Examples of custom widgets are SEO recommendations, sentiment analysis, and content translation in different languages.

##***REMOVED***Examples of custom fields created using Extensions
Here are some examples/use cases of custom fields that can be created using Extensions. These examples come with readme files that explain how to install and get started with these fields.
The **Dashboard Widgets extension** allows you to add widgets to the dashboard of your stack. Using this extension, you can create useful widgets such as recently published content, to-do list, personal notes, stack summary, and more.

The **JSON Rich Text Editor Plugins** lets you add/create custom plugins to extend the functionality of your JSON Rich Text Editor as per your needs. You can use the prebuilt JSON RTE plugins by modifying the code to suit your requirement. Some of the basic prebuilt plugins include Highlight, Info Panel, and Word Count.


This is a repository of example extensions created using Contentstack’s [App SDK](https://www.npmjs.com/package/@contentstack/app-sdk) for JSON RTE Plugins and for others [Extensions SDK](https://github.com/contentstack/ui-extensions-sdk).

### Examples of custom fields created using Extensions

Here are some examples/use cases of custom fields that can be created using Extensions. These examples come with readme files that explain how to install and get started with these fields.

[Color Picker](./color-picker):
A native color picker polyfill that allows users to select color as input value and saves the color code in the backend.


[Ace Editor](./ace-editor):
A code editor written in JavaScript, allowing you to edit HTML, PHP, JavaScript and other with ease.

[JSON Editor](./json-editor):
A simple editor that lets you view, edit and format JSON code within the field of your content type

[Key-value Field](./key-value-field):
This extension lets you add key-value pairs as input value of a field of your content type.
This extension lets you add key-value pairs as input value of a field of your content type.

[Progress Bar](./progress-bar):
It lets you display a progress bar as input field. Users can set value by sliding the progress bar to the left or right.

[Star Ratings](./ratings):
This extension lets you display five stars as an input field. Users can select one or more stars, and a corresponding value will be saved in Contentstack.
[Star Ratings](./ratings):
This extension lets you display five stars as an input field. Users can select one or more stars, and a corresponding value will be saved in Contentstack.

[Marketo Forms](./marketo-forms):
This extension lets you fetch and display the list of your existing Marketo forms into the field of your content type.

[Brightcove](./brightcove):
This extension lets you fetch and display your Brightcove videos into a field of your content type.

[Shopify](./shopify):
This extension lets you load products of your Shopify store into the field of your content type.

[Egnyte](./Egnyte):
This extension lets you fetch files of your Egnyte account and display them into a field of your content type.

[Ooyala](./ooyala):
This extension lets you fetch and display your Ooyala videos into a field of your content type.

[Text Intelligence](./text-intelligence):
[Optimizely](./optimizely):
This extension lets you serve personalized content by allowing you to select the audience for each entry.

[Youtube](./youtube):
This extension lets you fetch and display Youtube videos into a field of your content type.

[External API Lookup](./external-api-lookup-template):
This extension lets you fetch data from an external API and display the data as possible values for the field on an entry page in Contentstack.

### Examples of custom widgets created using Extensions

Here are some examples/use cases of custom widgets that can be created using Extensions. These examples come with readme files that explain how to install and get started with these widgets.

[Text Intelligence](./text-intelligence):
This extension (custom widget) uses MonekyLearn APIs to provide helpful recommendations such as content summarizer, keyword extractor, retail classifier, etc.

###***REMOVED***Other Documentation
[Google Analytics](./google-analytics):
This widget uses the Google Analytics data to display the traffic analysis and statistics of your entry on the sidebar of the entry.

[Optimizely Experiments](./optimizely-experiments):
This extension lets you retrieve and display Optimizely Experiments and their details in your entry.

[Developer Tools](./developer-tools):
This widget extension provides developers with quick tools (API endpoint, JSON, etc.) to work with an entry or all entries of a content type and do a lot more.

### Examples of dashboard widgets created using Extensions

Here are some examples/use cases of dashboard widgets that can be created using Extensions. These examples come with readme files that explain how to install and get started with these widgets.

[Google Analytics](./dashboard-widget-google-analytics):
This dashboard widget uses the Google Analytics data to display the traffic analysis and statistics of your site on the stack dashboard.

[Content Type Visualizer](./content-type-visualizer):
Content Type Visualizer Dashboard Widget offers a graphical representation of all content types, along with their fields, in a particular stack.

### Examples of JSON RTE Plugin created using Extensions

Here are some examples/use cases of JSON RTE Plugin that can be created using Extensions. These examples come with readme files that explain how to install and get started with these plugins.

[Highlight](./highlight)
Allows you to highlight certain parts of your content, such as a whole line of text or a paragraph.


[Info Panel](./info-panel)
Allows you to place important content inside a colored panel to make it stand out.


[Word Count](./word-count)
Allows you to track the word count for your JSON Rich Text Editor content.

### Other Documentation

- [What are Extensions](https://www.contentstack.com/docs/guide/extensions)
- [Extensions SDK](https://github.com/contentstack/ui-extensions-sdk)
- [Extensions FAQs](https://www.contentstack.com/docs/faqs#extensions)
- [Extensions FAQs](https://www.contentstack.com/docs/faqs#extensions)
27 changes: 27 additions & 0 deletions SECURITY.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,27 @@
## Security

Contentstack takes the security of our software products and services seriously, which includes all source code repositories managed through our GitHub organizations.

If you believe you have found a security vulnerability in any Contentstack-owned repository, please report it to us as described below.

## Reporting Security Issues

**Please do not report security vulnerabilities through public GitHub issues.**

Send email to [security@contentstack.com](mailto:security@contentstack.com).

You should receive a response within 24 hours. If for some reason you do not, please follow up via email to ensure we received your original message.

Please include the requested information listed below (as much as you can provide) to help us better understand the nature and scope of the possible issue:

- Type of issue (e.g. buffer overflow, SQL injection, cross-site scripting, etc.)
- Full paths of source file(s) related to the manifestation of the issue
- The location of the affected source code (tag/branch/commit or direct URL)
- Any special configuration required to reproduce the issue
- Step-by-step instructions to reproduce the issue
- Proof-of-concept or exploit code (if possible)
- Impact of the issue, including how an attacker might exploit the issue

This information will help us triage your report more quickly.

[https://www.contentstack.com/trust/](https://www.contentstack.com/trust/)
21 changes: 21 additions & 0 deletions ace-editor/LICENSE
Original file line number Diff line number Diff line change
@@ -0,0 +1,21 @@
MIT License

Copyright (c) 2026 Contentstack

Permission is hereby granted, free of charge, to any person obtaining a copy
of this software and associated documentation files (the "Software"), to deal
in the Software without restriction, including without limitation the rights
to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
copies of the Software, and to permit persons to whom the Software is
furnished to do so, subject to the following conditions:

The above copyright notice and this permission notice shall be included in all
copies or substantial portions of the Software.

THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE
AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
SOFTWARE.
Loading
Loading