
Security News
Attackers Are Hunting High-Impact Node.js Maintainers in a Coordinated Social Engineering Campaign
Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.
request-local
Advanced tools
request-local
](https://codecov.io/gh/dimichgh/request-local)
The module provides middleware and API to store request context data.
It should not be used by any module directly, i.e. should not be defined as a direct dependency by any module, but as a peerDependencies. This is to prevent conflicts that may arise from using multiple versions of this module. Every app should include it as a direct dependency.
NOTE: if you want to use the module in some other module, please use it in peerDependencies section, not dependencies.
Important: to make sure everything is patched before any other module is loaded, you need to put this as a first module require in your app entry point.
npm install request-local --save
Module package.json:
peerDependencies: {
"request-local": "~X.X.X"
}
App package.json:
dependencies: {
"request-local": "~X.X.X"
}
Middlware:
app.use(require('request-local/middleware').create());
Set/getting attribute:
// setitng using default namespace
require('request-local').data.foo = 'bar';
// getting from default namespace
console.log(require('request-local').data.foo);
// by default request local stores only request and response and you can access it this way
console.log(require('request-local').request.url);
console.log(require('request-local').response.headers);
Though domain is correctly handled by most of modules there is still some module or API like http, request. They may lose domain context in case of network error or other. In this case if you have callback or emitter that causes this, you can use the following API to bind context back:
The use of core http module:
var requestLocal = require('request-local');
requestLocal.run(function (err, ctx) {
ctx.myVar = 'val';
var req = require('http').request('http://you/url', function (err, res) {
console.log('the value is still there: ', requestLocal.data.myVar);
});
requestLocal.bindEmitterAll(req);
req.setTimeout(function () {
console.log('the value is still there: ', requestLocal.data.myVar);
req.abort();
});
req.on('error', function (err) {
console.log('the value is still there: ', requestLocal.data.myVar);
});
req.write('data');
res.end();
});
Example of callback binding
var requestLocal = require('request-local');
requestLocal.run(function (err, ctx) {
ctx.myVar = 'val';
require('request').get({
uri: 'http://you/url',
timeout: 900
}, requestLocal.bindAll(function (err, res, body) {
console.log('the value is still there: ', requestLocal.data.myVar);
}));
});
FAQs
Request local storage for storing request context information
The npm package request-local receives a total of 83 weekly downloads. As such, request-local popularity was classified as not popular.
We found that request-local demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.

Security News
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.

Security News
Node.js has paused its bug bounty program after funding ended, removing payouts for vulnerability reports but keeping its security process unchanged.