Research
Security News
Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
@gsandf/wordpress-graphql-schema
Advanced tools
🤝 GraphQL schema for interacting with the WordPress API
🤝 GraphQL schema for interacting with the WordPress API
⚠️ This is a work-in-progress. Until a major version number is met, expect features to change. Also, only queries have been added right now.
Nearly all websites we make right now use React with server-side rendering. In order to deliver projects quickly and cheaply, we often use WordPress as an admin interface. This package is a work-in-progress to help communication between the two.
This creates a GraphQL server that fetches data from https://example.com/wp-json
:
import { createSchema } from '@gsandf/wordpress-graphql-schema';
import { GraphQLServer } from 'graphql-yoga';
const graphqlOptions = {
endpoint: '/graphql',
playground: '/graphql',
port: process.env.PORT || 3000,
subscriptions: '/graphql'
};
const wordPressOptions = {
baseURL: 'https://example.com/wp-json'
};
const server = new GraphQLServer({ schema: createSchema(wordPressOptions) });
server.start(graphqlOptions, ({ playground, port }) => {
console.log(` > Site @ http://localhost:${port}/`);
console.log(` > Playground @ http://localhost:${port}${playground}`);
});
createSchema(options)
options
Type: object
Options are passed to axios. For details, see the axios docs.
Options with defaults already set are listed below:
options.baseURL
Type: string
Default: 'localhost:8080/wp-json'
options.headers
Type: object
Default: { 'Content-Type': 'application/json' }
createUncompiledSchema(options)
Same as createSchema
, but returns an object with typeDefs
, resolvers
, and
schemaDefinitions
instead of a schema AST. This can be useful if you need to
tweak parts of the schema before using it.
options
Type: object
Options are passed to axios. For details, see the axios docs.
Options with defaults already set are listed below:
options.baseURL
Type: string
Default: 'localhost:8080/wp-json'
options.headers
Type: object
Default: { 'Content-Type': 'application/json' }
wpFetch(path, options)
Create a network request to the WordPress API.
path
Type: string
The endpoint to call.
options
Type: object
Options are passed to axios. For details, see the axios docs.
options.urlParams
Used to pre-compile request paths. For example:
const options = {
urlParams: { id: 3 }
};
wpFetch('/example/:id', options);
```
...will create a network request to `{{baseURL}}/example/3`.
## Install
Using [Yarn]:
```bash
$ yarn add @gsandf/wordpress-graphql-schema
…or using npm:
$ npm i --save @gsandf/wordpress-graphql-schema
MIT
FAQs
🤝 GraphQL schema for interacting with the WordPress API
The npm package @gsandf/wordpress-graphql-schema receives a total of 1 weekly downloads. As such, @gsandf/wordpress-graphql-schema popularity was classified as not popular.
We found that @gsandf/wordpress-graphql-schema demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 10 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Security News
MITRE's 2024 CWE Top 25 highlights critical software vulnerabilities like XSS, SQL Injection, and CSRF, reflecting shifts due to a refined ranking methodology.
Security News
In this segment of the Risky Business podcast, Feross Aboukhadijeh and Patrick Gray discuss the challenges of tracking malware discovered in open source softare.