Security News
New Python Packaging Proposal Aims to Solve Phantom Dependency Problem with SBOMs
PEP 770 proposes adding SBOM support to Python packages to improve transparency and catch hidden non-Python dependencies that security tools often miss.
@glints/hapi-url-plugin
Advanced tools
A plugin that attempts to construct a complete URL object for an incoming request.
By default, hapi does not have the complete URL information as sent from a
browser. Therefore, request.url
doesn't provide information such as the
protocol used. This plugin attempts to check other sources such as the
X-Forwarded-Proto
header to construct a complete URL object.
To integrate this into your project, install the package:
npm install --save @glints/hapi-url-plugin # If using npm
yarn add @glints/hapi-url-plugin # If using Yarn
Then register the plugin with hapi:
import { URLPlugin } from '@glints/hapi-url-plugin';
// Register the plugin with the hapi server.
await hapiServer.register({
plugin: URLPlugin,
options: {
numProxies: 1, // Optional, indicates the number of downstream proxies.
},
});
// In a request handler:
server.route({
...
handler: (request, h) => {
// request.plugins.URLPlugin.url is a URL object.
return request.plugins.URLPlugin.url.pathname;
},
});
We use EditorConfig to maintain consistent line-ending and indentation rules across all our projects. Ensure that you have the appropriate plugin installed in your preferred editor, or refer to .editorconfig
.
Glints is an online talent recruitment and career discovery platform headquartered in Singapore. It is a platform for young talent to build up their career readiness through internships and graduate jobs; developing skill sets required in different careers.
P.S. We deal with quite a number of interesting engineering problems centered on matching the right talent to employers. Sounds interesting? Send your resume to tech@glints.com.
FAQs
A plugin that attempts to construct a complete URL object for an incoming request.
The npm package @glints/hapi-url-plugin receives a total of 40 weekly downloads. As such, @glints/hapi-url-plugin popularity was classified as not popular.
We found that @glints/hapi-url-plugin demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 4 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
PEP 770 proposes adding SBOM support to Python packages to improve transparency and catch hidden non-Python dependencies that security tools often miss.
Security News
Socket CEO Feross Aboukhadijeh discusses open source security challenges, including zero-day attacks and supply chain risks, on the Cyber Security Council podcast.
Security News
Research
Socket researchers uncover how threat actors weaponize Out-of-Band Application Security Testing (OAST) techniques across the npm, PyPI, and RubyGems ecosystems to exfiltrate sensitive data.