Security News
Cloudflare Adds Security.txt Setup Wizard
Cloudflare has launched a setup wizard allowing users to easily create and manage a security.txt file for vulnerability disclosure on their websites.
Helpers and handlers for building (jsonp) APIs in Express.
All caspers methods return a function that can be used in the Express callback chain, or as callbacks for your database.
The following examples assume this:
// express 'app' available
var casper = require('casper');
Send an empty opject:
// res.jsonp({}) is sent
app.get('/', casper.noop());
Or return some custom data:
// res.jsonp({ hello: 'world' }) is sent
app.get('/', casper.noop({
hello: 'world'
}));
casper.db
returns a function to be used as a database callback. It assumes the first argument is an err
and the second is the data
is has to send – an array or an object.
It takes Express' req
and res
as arguments:
casper.db(req, res)
For example:
app.get('/', function (req, res) {
YourModel
.find()
.exec(casper.db(req, res));
});
It can also take a callback which, if present, is called instead of sending data directly back to the client.
With a callback:
app.get('/', function (req, res) {
YourModel
.find()
.exec(casper.db(req, res, function (err, data) {
// Do something with data
}));
});
If it is passed an error, it will pass that on to the client with a 500 status code. If it recieves no data, or an empty array, it will return the data it recieved with a 404 status.
Check for the presence of data in the body using a key:
// body is { testKey: "Hello" }
// calls next() becuase present
app.get('/',
casper.check.body('testKey'),
casper.noop());
If the data is missing from the body it sends a 400 error, detailing the missing parameter:
app.get('/',
casper.check.body('nonExistantKey'),
casper.noop());
// results in
res.jsonp(400, { error: 'Missing nonExistantKey from body.' });
Remove a key from the body:
// body is { testKey: "Hello", otherKey: "World" }
app.get('/',
casper.rm('testKey'),
casper.noop());
// afterwards body is { otherKey: "World" }
Whitelist a key or array of keys allowed on the body.
// body is { testKey: "Hello", otherKey: "World" }
app.get('/',
casper.allow.body('otherKey'),
casper.noop());
// afterwards body is { test: "Hello" }
With an array:
// body is { testKey: "Hello", otherKey: "World", unwantedKey: "World" }
app.get('/',
casper.allow.body(['testKey', 'otherKey']),
casper.noop());
// afterwards body is { testKey: "Hello", otherKey: "World" }
npm install casper
MIT
FAQs
Helpers and handlers for building APIs in express.
The npm package casper receives a total of 106 weekly downloads. As such, casper popularity was classified as not popular.
We found that casper demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Cloudflare has launched a setup wizard allowing users to easily create and manage a security.txt file for vulnerability disclosure on their websites.
Security News
The Socket Research team breaks down a malicious npm package targeting the legitimate DOMPurify library. It uses obfuscated code to hide that it is exfiltrating browser and crypto wallet data.
Security News
ENISA’s 2024 report highlights the EU’s top cybersecurity threats, including rising DDoS attacks, ransomware, supply chain vulnerabilities, and weaponized AI.