Security News
PyPI Introduces Digital Attestations to Strengthen Python Package Security
PyPI now supports digital attestations, enhancing security and trust by allowing package maintainers to verify the authenticity of Python packages.
Provides a Q promise API for HTTP requests and responses. This should resemble JSGI and its hypothetical inverse, but I haven't pored through the specification to ensure this.
The API
Server(respond(request):Response*)
listen(port:Number):Server*
stop():Undefined*
read(url:String):String
read(request:Request):String
request(url:String):Response*
request(request:Request):Response*
{Client,Server}Request:Object
url:String the full URL, regardless of routing
path:String the full path, regardless of routing
scriptName:String the routed portion
of the path, e.g., "" for the
root document
pathInfo:String the part of the path
that remains to be routed, e.g.,
"/" for the root document
version:Array HTTP version
scheme:String e.g., "http"
method:String e.g., "GET"
host:String
port:Number
remoteHost:String
remotePort:Number
headers:Object
body*
forEach(write(String*)):Undefined*
node the wrapped Node request object
{Client,Server}Response:Object
status:Number
headers:Object
body*
forEach(write(String*)):Undefined*
onclose:Function?
node the wrapped Node response object
Conventions
`*` indicates that a value may be a promise
`?` indicates optional
Copyright 2009, 2010, 2011 Kristopher Michael Kowal MIT License (enclosed)
FAQs
Q promise based HTTP client and server interface
The npm package q-http receives a total of 4 weekly downloads. As such, q-http popularity was classified as not popular.
We found that q-http demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
PyPI now supports digital attestations, enhancing security and trust by allowing package maintainers to verify the authenticity of Python packages.
Security News
GitHub removed 27 malicious pull requests attempting to inject harmful code across multiple open source repositories, in another round of low-effort attacks.
Security News
RubyGems.org has added a new "maintainer" role that allows for publishing new versions of gems. This new permission type is aimed at improving security for gem owners and the service overall.