Security News
PyPI Introduces Digital Attestations to Strengthen Python Package Security
PyPI now supports digital attestations, enhancing security and trust by allowing package maintainers to verify the authenticity of Python packages.
@approov/ionic-native-http-connection-backend
Advanced tools
Allows the Approov advanced http plugin to be used with Ionic angular Http and HttpClient requests
This library adds @awesome-cordova-plugins/approov-advanced-http
(when available) as a connection backend to Angular's Http
and HttpClient
.
This is a fork of project original developed for a different reason, see CORS Motivation. It is being used to intercept Angular requests so they can use the Advanced Http Plugin that has been updated to provide Approov protection.
Now that Apple promotes/requires the use of WKWebView
instead of the deprecated UIWebView
, Ionic has switched newly created apps over via their cordova-plugin-ionic-webview
(and Cordova offers it via their cordova-plugin-wkwebview-engine
). That causes requests that used to work just fine to fail with CORS errors.
The real solution of course is to fix the CORS issues server side - but this may not be possible with e.g. 3rd party APIs.
Even though there is a way to solve CORS issues without changing server's response header by using @awesome-cordova-plugins/http
, this only works on device and doesn't provide all the power of Angular's Http
and HttpClient
.
HttpBackend
interface for Angular's HttpClient
HttpBackend
interface tries to use @awesome-cordova-plugins/approov-advanced-http
whenever it is possible (= on device with installed plugin)HttpBackend
finds it impossible to use @awesome-cordova-plugins/approov-advanced-http
, it falls back to standard Angular code (HttpXhrBackend
, which uses XmlHttpRequest
)This strategy allows developers to use Angular's HttpClient
transparently in both environments: Browser and Device.
npm install --save ionic-native-http-connection-backend
Then follow instructions at https://ionicframework.com/docs/native/http/#installation
Add NativeHttpModule
, NativeHttpBackend
and NativeHttpFallback
into the application's module
import { NgModule } from '@angular/core';
import { HttpBackend, HttpXhrBackend } from '@angular/common/http';
import { NativeHttpModule, NativeHttpBackend, NativeHttpFallback } from '@approov/ionic-native-http-connection-backend';
import { Platform } from '@ionic/angular';
@NgModule({
declarations: [],
imports: [
NativeHttpModule
],
bootstrap: [],
entryComponents: [],
providers: [
{provide: HttpBackend, useClass: NativeHttpFallback, deps: [Platform, NativeHttpBackend, HttpXhrBackend]},
],
})
export class AppModule {
}
Contributing guidelines could be found in CONTRIBUTING.md
FAQs
Allows the Approov advanced http plugin to be used with Ionic angular Http and HttpClient requests
We found that @approov/ionic-native-http-connection-backend demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 5 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
PyPI now supports digital attestations, enhancing security and trust by allowing package maintainers to verify the authenticity of Python packages.
Security News
GitHub removed 27 malicious pull requests attempting to inject harmful code across multiple open source repositories, in another round of low-effort attacks.
Security News
RubyGems.org has added a new "maintainer" role that allows for publishing new versions of gems. This new permission type is aimed at improving security for gem owners and the service overall.