
Security News
npm ‘is’ Package Hijacked in Expanding Supply Chain Attack
The ongoing npm phishing campaign escalates as attackers hijack the popular 'is' package, embedding malware in multiple versions.
Utility for parsing URL query parameters with types.
import { UrlArgs } from 'urlargs';
// define default values
const args = new UrlArgs( {
enabled: false,
count: 10,
name: 'test',
tags: [ 'a', 'b' ],
} );
// URL = website.com/?count=20&enabled=false
// get typed parameters based on the defaults
const { count, enabled, name, tags } = args.values;
URL parameters are considered true
if set to any of the following:
?enabled
?enabled=true
?enabled=TRUE
?enabled=1
?enabled=false
?enabled=FALSE
?enabled=0
?enabled=anythingElse
[!TIP] Parameters that appear multiple times are collected into a string array.
?tags=a&tags=b
→['a', 'b']
[!CAUTION] Arrays are NOT comma-separated! The following will NOT work:
?tags=a,b
→['a,b']
UrlArgs can also generate a table of the parameters and their descriptions in the console:
args.describe( {
count: 'The number of items to display',
enabled: 'Whether the items are enabled',
name: 'The name of the items',
} );
This will produce output like this in the browser console. Values that differ from the defaults will be highlighted.
FAQs
Utility for parsing URL query parameters with types.
The npm package urlargs receives a total of 26 weekly downloads. As such, urlargs popularity was classified as not popular.
We found that urlargs demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
The ongoing npm phishing campaign escalates as attackers hijack the popular 'is' package, embedding malware in multiple versions.
Security News
A critical flaw in the popular npm form-data package could allow HTTP parameter pollution, affecting millions of projects until patched versions are adopted.
Security News
Bun 1.2.19 introduces isolated installs for smoother monorepo workflows, along with performance boosts, new tooling, and key compatibility fixes.