
Research
PyPI Package Disguised as Instagram Growth Tool Harvests User Credentials
A deceptive PyPI package posing as an Instagram growth tool collects user credentials and sends them to third-party bot services.
django-blockedemails
Advanced tools
A Django reusable app that provides a form field, models and validators for blocking email addresses
django-blockedemails is a reusable app that provides a form field, validators, and models that check if an email is being blocked, or is disposable/throwaway.
You can install django-blockedemails with pip by typing::
pip install django-blockedemails
Or with easy_install by typing::
easy_install django-blockedemails
Or manually by downloading a tarball and typing::
python setup.py install
django-blockedemails adds 3 settings
Specifies an API_KEY to use with http://www.block-disposable-email.com/::
BLOCK_DISPOSABLE_EMAIL_API_KEY = "" # Defaults to None which disables this validator
Specifies a different url to use for the block-disposable-email.com api::
BLOCK_DISPOSABLE_EMAIL_URL = "" # Will be string formated with a dictionary with api_key and domain
Specifies if we should block an email if an exception occurs trying to check block-disposable-email.com::
BLOCK_EMAIL_ON_URLERROR = False # Defaults to False
To use the formfield simply import it and use it::
from django import forms
from blockedemails.fields import EmailField
class ExampleForm(forms.Form):
email = EmailField()
FAQs
A Django reusable app that provides a form field, models and validators for blocking email addresses
We found that django-blockedemails demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
A deceptive PyPI package posing as an Instagram growth tool collects user credentials and sends them to third-party bot services.
Product
Socket now supports pylock.toml, enabling secure, reproducible Python builds with advanced scanning and full alignment with PEP 751's new standard.
Security News
Research
Socket uncovered two npm packages that register hidden HTTP endpoints to delete all files on command.