Security News
JSR Working Group Kicks Off with Ambitious Roadmap and Plans for Open Governance
At its inaugural meeting, the JSR Working Group outlined plans for an open governance model and a roadmap to enhance JavaScript package management.
circular-json
Advanced tools
The circular-json npm package is designed to handle JSON serialization and deserialization of objects that contain circular references. This is particularly useful when working with complex data structures that would otherwise cause errors with the standard JSON.stringify and JSON.parse methods.
Stringify with Circular References
This feature allows you to convert an object with circular references into a JSON string without causing errors. The code sample demonstrates how to stringify an object that references itself.
const CircularJSON = require('circular-json');
const obj = {};
obj.self = obj;
const jsonString = CircularJSON.stringify(obj);
console.log(jsonString);
Parse with Circular References
This feature allows you to parse a JSON string that contains circular references back into an object. The code sample shows how to parse a JSON string that represents an object with a circular reference.
const CircularJSON = require('circular-json');
const jsonString = '{"self":"~"}';
const obj = CircularJSON.parse(jsonString);
console.log(obj);
Flatted is a similar package that provides a way to serialize and deserialize objects with circular references. It uses a different approach by creating a special JSON format that can be parsed back into the original object. Compared to circular-json, flatted is more modern and actively maintained.
json-stringify-safe is another package that handles circular references during JSON serialization. It provides a drop-in replacement for JSON.stringify that doesn't throw errors on circular references. Unlike circular-json, it does not provide a custom parse method.
Serializes and deserializes otherwise valid JSON objects containing circular references into and from a specialized JSON format.
A usage example:
var object = {};
object.arr = [
object, object
];
object.arr.push(object.arr);
object.obj = object;
var serialized = CircularJSON.stringify(object);
// '{"arr":["~","~","~arr"],"obj":"~"}'
// NOTE: CircularJSON DOES NOT parse JS
// it handles receiver and reviver callbacks
var unserialized = CircularJSON.parse(serialized);
// { arr: [ [Circular], [Circular] ],
// obj: [Circular] }
unserialized.obj === unserialized;
unserialized.arr[0] === unserialized;
unserialized.arr.pop() === unserialized.arr;
A quick summary:
~
as a special prefix symbol to denote which parent the reference belongs to (i.e. ~root~child1~child2
)npm install --save circular-json
'use strict';
var
CircularJSON = require('circular-json'),
obj = { foo: 'bar' },
str
;
obj.self = obj;
str = CircularJSON.stringify(obj);
There are no dependencies.
(generated via gitstrap)
<script src="build/circular-json.js"></script>
'use strict';
var CircularJSON = window.CircularJSON
, obj = { foo: 'bar' }
, str
;
obj.self = obj;
str = CircularJSON.stringify(obj);
NOTE: Platforms without native JSON (i.e. MSIE <= 8) requires json3.js
or similar.
It is also a bad idea to CircularJSON.parse(JSON.stringify(object))
because of those manipulation used in CircularJSON.stringify()
able to make parsing safe and secure.
As summary: CircularJSON.parse(CircularJSON.stringify(object))
is the way to go, same is for JSON.parse(JSON.stringify(object))
.
It's the same as native JSON, except the fourth parameter placeholder
, which circular references to be replaced with "[Circular]"
(i.e. for logging).
Bear in mind JSON.parse(CircularJSON.stringify(object))
will work but not produce the expected output.
The module json-stringify-safe seems to be for console.log()
but it's completely pointless for JSON.parse()
, being latter one unable to retrieve back the initial structure. Here an example:
// a logged object with circular references
{
"circularRef": "[Circular]",
"list": [
"[Circular]",
"[Circular]"
]
}
// what do we do with above output ?
Just type this in your node
console: var o = {}; o.a = o; console.log(o);
. The output will be { a: [Circular] }
... good, but that ain't really solving the problem.
However, if that's all you need, the function used to create that kind of output is probably faster than CircularJSON
and surely fits in less lines of code.
So here the thing: circular references can be wrong but, if there is a need for them, any attempt to ignore them or remove them can be considered just a failure.
Not because the method is bad or it's not working, simply because the circular info, the one we needed and used in the first place, is lost!
In this case, CircularJSON
does even more than just solve circular and recursions: it maps all same objects so that less memory is used as well on deserialization as less bandwidth too!
It's able to redefine those references back later on so the way we store is the way we retrieve and in a reasonably performant way, also trusting the snappy and native JSON
methods to iterate.
FAQs
JSON does not handle circular references. This version does
The npm package circular-json receives a total of 980,531 weekly downloads. As such, circular-json popularity was classified as popular.
We found that circular-json demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
At its inaugural meeting, the JSR Working Group outlined plans for an open governance model and a roadmap to enhance JavaScript package management.
Security News
Research
An advanced npm supply chain attack is leveraging Ethereum smart contracts for decentralized, persistent malware control, evading traditional defenses.
Security News
Research
Attackers are impersonating Sindre Sorhus on npm with a fake 'chalk-node' package containing a malicious backdoor to compromise developers' projects.