
Security News
The Hidden Blast Radius of the Axios Compromise
The Axios compromise shows how time-dependent dependency resolution makes exposure harder to detect and contain.
[](https://travis-ci.org/mohjs/moh-errors)
The advanced http response friendly Error class (extend from Error) to handle error with more info and features.
# with yarn
yarn add moh-error --save
# with npm
npm install moh-error --save
To generate a moh-error, use 1 arg or 2 args as below
1 arg: [String || Error ||Object]
2 args: [String, Error], [Object, StatusCode(/^[1-5][0-9][0-9]$/)]
the first arg is error instance or error message, the second arg are custom object or status code
const { MohError: MyError } = require('moh-error')
// use like normal Error
const error = new MyError('The error message')
// use with normal Error
const someErr = new Error('Default Error')
const error = new MyError(someErr)
// use with custom object
const ERRORS = {
UNAUTH: {
status: 401,
code: 11001,
message: 'User not authenticated'
}
}
const error = new MyError(ERRORS.UNAUTH)
// add extra info
const loginError = new MyError('Faild to login', {
user: {
username: 'ole3021',
password: 'youshouldnotpass'
},
isSentry: true // will send this error to sentry
})
// add status code
const error = new MyError(new Error('Unauthorized'), 401)
res.send(error.toHttp())
The method to init the lib, include sentry and unExpectedError handling.(not necessary if not use those features.)
The method to transform the error object to an response
mohErrorInstance.toHttp()
Add isSentry prop in the create error info, will send this error to sentry.
FAQs
[](https://travis-ci.org/mohjs/moh-errors)
We found that moh-error demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
The Axios compromise shows how time-dependent dependency resolution makes exposure harder to detect and contain.

Research
A supply chain attack on Axios introduced a malicious dependency, plain-crypto-js@4.2.1, published minutes earlier and absent from the project’s GitHub releases.

Research
Malicious versions of the Telnyx Python SDK on PyPI delivered credential-stealing malware via a multi-stage supply chain attack.