
Security News
Happy Birthday, Shai-Hulud
It has been one year since Shai-Hulud made its first appearance on npm.
data-uri-to-buffer
Advanced tools
This module accepts a "data" URI String of data, and returns
an ArrayBuffer instance with the decoded data.
This module is intended to work on a large variety of JavaScript runtimes, including Node.js and web browsers.
import { dataUriToBuffer } from 'data-uri-to-buffer';
// plain-text data is supported
let uri = 'data:,Hello%2C%20World!';
let parsed = dataUriToBuffer(uri);
console.log(new TextDecoder().decode(parsed.buffer));
// 'Hello, World!'
// base64-encoded data is supported
uri = 'data:text/plain;base64,SGVsbG8sIFdvcmxkIQ%3D%3D';
parsed = dataUriToBuffer(uri);
console.log(new TextDecoder().decode(parsed.buffer));
// 'Hello, World!'
export interface ParsedDataURI {
type: string;
typeFull: string;
charset: string;
buffer: ArrayBuffer;
}
The type property gets set to the main type portion of
the "mediatype" portion of the "data" URI, or defaults to "text/plain" if not
specified.
The typeFull property gets set to the entire
"mediatype" portion of the "data" URI (including all parameters), or defaults
to "text/plain;charset=US-ASCII" if not specified.
The charset property gets set to the Charset portion of
the "mediatype" portion of the "data" URI, or defaults to "US-ASCII" if the
entire type is not specified, or defaults to "" otherwise.
Note: If only the main type is specified but not the charset, e.g.
"data:text/plain,abc", the charset is set to the empty string. The spec only
defaults to US-ASCII as charset if the entire type is not specified.
FAQs
Create an ArrayBuffer instance from a Data URI string
The npm package data-uri-to-buffer receives a total of 43,688,683 weekly downloads. As such, data-uri-to-buffer popularity was classified as popular.
We found that data-uri-to-buffer demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
It has been one year since Shai-Hulud made its first appearance on npm.

Research
/Security News
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.

Security News
GitHub Actions now supports cache-mode, a least-privilege control on the Actions cache aimed at the cache poisoning technique behind recent compromises.