🚀 Big News: Socket Acquires Coana to Bring Reachability Analysis to Every Appsec Team.Learn more
Socket
DemoInstallSign in
Socket

@kilpi/core

Package Overview
Dependencies
Maintainers
1
Versions
27
Alerts
File Explorer

Advanced tools

Socket logo

Install Socket

Detect and block malicious and high-risk dependencies

Install

@kilpi/core

Kilpi Core · Kilpi is the authorization framework for full-stack TypeScript applications, designed for flexible, powerful, agnostic, intuitive and developer friendly authorization.

0.14.0
latest
Source
npm
Version published
Weekly downloads
23
-79.82%
Maintainers
1
Weekly downloads
 
Created
Source

🐢 Kilpi — Authorization made simple

Read the docs to get started

Kilpi is the open-source TypeScript authorization library designed for developers who need flexible, powerful, and intuitive authorization.

Designed and created by Jussi Nevavuori with ❤️ in Brisbane & Helsinki

NPM Downloads NPM Version GitHub Repo stars

Features

  • Server-first authorization
  • Framework agnostic
  • Auth provider agnostic
  • Policies as code
  • Async policies
  • Supports any authorization model
  • Protected queries
  • Plugin API & Library
  • Developer friendly API
  • 100% Type-safe

Installation guides

...or any other framework - Kilpi is easy to integrate into any TypeScript application.

Examples

Define policies declaratively

// Kilpi.ts
export const Kilpi = createKilpi({ 
  getSubject, 
  policies: {
    documents: {
      update(user, doc: Document) {
        if (!user) return deny("Unauthenticated");
        return user.id === doc.ownerId ? grant(user) : deny();
      }
    }
  }
})

Authorize actions with one line

const user = await Kilpi.authorize("documents:update", document);

Protect your data right at the source

const getDocument = Kilpi.query(
  async (id: string) => await db.documents.get(id),
  {
    async protector({ output: doc }) {
      if (doc) await Kilpi.authorize("documents:read", doc);
      return doc;
    }
  }
);

await getDocument.protect("1");

And much more.

Read the docs to get started

Keywords

fine-grained

FAQs

Package last updated on 25 Apr 2025

Did you know?

Socket

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Install

Related posts