Security News
Node.js EOL Versions CVE Dubbed the "Worst CVE of the Year" by Security Experts
Critics call the Node.js EOL CVE a misuse of the system, sparking debate over CVE standards and the growing noise in vulnerability databases.
babel-preset-node5
Advanced tools
Node 5.x brings ~59% native ES6/ES2015 coverage. This preset for Babel 6 attempts to bridge the gap for the much of the remaining 41% using Babel plug-ins.
Babel 6.x is awesome, but simply including the ES2015 preset means you're transpiling features that your Node 5.x installation can already do faster and natively, replacing them with inferior / old code.
This preset complements existing V8-native functionality - it doesn't work around it.
The end result is nearly always a faster build and script execution time.
let
(via babel-plugin-transform-strict-mode)Note: This package originally shipped with the React preset, but to avoid bloat, doesn't any longer. If you want to add that, please install babel-preset-react too
Install via NPM the usual way:
npm i babel-preset-node5
.babelrc
(recommended)Create a .babelrc
file in your project root, and include 'node5' in your preset path:
{
"presets": [
"node5"
]
}
Now whenever you run babel-node
, it will polyfill your app with the ES2015 features that Node 5 is missing.
$ babel script.js --presets node5
If you don't want to use a project-wide .babelrc
file (as above):
require("babel-core").transform("code", {
presets: ["node5"]
});
And if you do, and you want to use vanilla node
instead of babel-node
as your CLI, you can create an entry script that references your pre-transpiled code like so:
require('babel-register');
require('path/to/es6/script');
... which will then run everywhere Node can.
Of course, make sure to npm i -S babel-core
or npm i -S babel-register
respectively, to grab the NPM packages you'll need to transpile on-the-fly.
Follow vendor instructions and include node5
in your babel "preset" list.
Babel has a ready-made preset for React, and you now need to install it separately.
Just grab it via NPM:
npm i babel-preset-react
And then add it to your "presets" list in .babelrc
:
{
"presets": [
"node5",
"react"
]
}
The async/await proposal allows you to wait on a Promise, and write asynchronous code that looks synchronous.
Here's an example:
async function getUsers(howMany) {
try {
const response = await fetch(`http://jsonplaceholder.typicode.com/users/${howMany}`); // <-- a Promise
return response.json(); // <-- Another promise.
} catch(e) {
console.log('some kind of error occurred: ', e)
}
}
getUsers.then(body => {
// "body" contains the result of `response.json()`. Async functions *always*
// return a promise, even if that means wrapping a non-Promise in Promise.resolve
})
In the above example, fetch
returns a promise. By prefixing the function with async
and prefixing every Promise with await
, we avoid the typical .then()
chain inside of the function block and can reason about the flow of the application a little more clearly.
We can also wrap promises in try/catch
blocks, instead of bolting on .catch()
chains.
The necessary babel plug-ins to use async/await are included in this package, so you can use this syntax right away.
This package originally tracked Babel 6.x versioning. The problem is, many of the plug-ins and transforms provided by Babel don't always track the the babel-core
version, so updating one dependency can throw the versioning schema off.
This package will instead now follow its own semver, starting (arbitrarily) at v10.0.0.
I'm using this repo in production, so you can be assured that I'm making it a priority to update Babel 6 deps regularly and track the latest plug-in versions.
FAQs
Babel preset for Node 5.x (ECMAScript stage 0 and up)
The npm package babel-preset-node5 receives a total of 202 weekly downloads. As such, babel-preset-node5 popularity was classified as not popular.
We found that babel-preset-node5 demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Critics call the Node.js EOL CVE a misuse of the system, sparking debate over CVE standards and the growing noise in vulnerability databases.
Security News
cURL and Go security teams are publicly rejecting CVSS as flawed for assessing vulnerabilities and are calling for more accurate, context-aware approaches.
Security News
Bun 1.2 enhances its JavaScript runtime with 90% Node.js compatibility, built-in S3 and Postgres support, HTML Imports, and faster, cloud-first performance.