
Research
/Security News
10 npm Typosquatted Packages Deploy Multi-Stage Credential Harvester
Socket researchers found 10 typosquatted npm packages that auto-run on install, show fake CAPTCHAs, fingerprint by IP, and deploy a credential stealer.
@juspay/blaze-sdk-react-native
Advanced tools
SDK for integrating Breeze 1CCO into your React Native Application
Blaze SDK React Native is a SDK which helps you integrate Breeze 1CCO and its services seamlessly to your React Native app running on Android/iOS.
Follow the below steps to integrate Blaze SDK into your React Native application:
In your react native project directory, run the following command:
npm install @juspay/blaze-sdk-react-native
Create a Json with correct parameters to initiate the SDK. This is the data that will be used to initialize the SDK.
// Create a JSONObject for the Initiate data
const initiatePayload = {
merchantId: "<MERCHANT_ID>",
environment: "<ENVIRONMENT>",
shopUrl: "<SHOP_URL>"
};
// Place Initiate Payload into SDK Payload
const initSDKPayload = {
requestId: "<UNIQUE_RANDOM_ID>",
service: "in.breeze.onecco",
payload: initiatePayload
};
Note: Obtain values for merchantId, environment and shopUrl from the Breeze team.
Refer to schemas for understanding what keys mean.
During the user journey the SDK will call the callback method with the result of the SDK operation. You need to implement this method in order to handle the result of the SDK operation.
function blazeCallbackHandler(event) {
const eventName = event.payload?.eventName;
switch (eventName) {
// Handle various events according to your desired logic
}
}
Finally, call the initiate method with the payload and the callback method. The first parameter is the context of the application.
// imports
import BlazeSDK from 'blaze-sdk-react-native';
BlazeSDK.initiate(initSDKPayload, blazeCallbackHandler);
Once the SDK is initiated, you can start processing your requests using the initialized instance of the SDK. The SDK will call the callback method with the result of the SDK operation.
Create a Json payload with the required parameters to process the request. The process payload differs based on the request. Refer to schemas sections to understand what kind of data is required for different requests
// 3.1 Create SDK Process Payload
// Create a JSONObject for the Process data
const processPayload = {};
processPayload.action = "<ACTION>";
// and more parameters required as per the action
// Place Process Payload into SDK Payload
const processSDKPayload = {
requestId: "<UNIQUE_RANDOM_ID>",
service: "in.breeze.onecco",
payload: processPayload
};
Call the process method on the Blaze instance with the process payload to start the user journey or a headless flow.
BlazeSDK.process(processSDKPayload)
For making the hardware back button work as expected, you need to call the handleBackPress method on the Blaze instance.
The method should be called in the hardwareBackPress event listener of your screen.
This method returns a boolean value which indicates if you need to handle back press or not.
BackHandler.addEventListener('hardwareBackPress', () => {
const handleBackPress = BlazeSDK.handleBackPress();
if (handleBackPress) {
// write your back press handling logic here
return false;
}
// Skip Back press events if Blaze SDK is handling it
return true;
});
FAQs
SDK for integrating Breeze 1CCO into your React Native Application
The npm package @juspay/blaze-sdk-react-native receives a total of 43 weekly downloads. As such, @juspay/blaze-sdk-react-native popularity was classified as not popular.
We found that @juspay/blaze-sdk-react-native demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 7 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
Socket researchers found 10 typosquatted npm packages that auto-run on install, show fake CAPTCHAs, fingerprint by IP, and deploy a credential stealer.

Product
Socket Firewall Enterprise is now available with flexible deployment, configurable policies, and expanded language support.

Security News
Open source dashboard CNAPulse tracks CVE Numbering Authorities’ publishing activity, highlighting trends and transparency across the CVE ecosystem.