@mantris/bearer

6.2.6 • Public • Published

@mantris/bearer

JWT/JWKS Express middleware with scope validation.

Usage sample:

const { HttpError } = require('@mantris/appify')
const bearer = require('@mantris/bearer')

// ...

const { jwt, scope, unauthorized } = bearer.factory({
  jwks: {
    uri: 'https://token-issuer.id.domain.com/.well-knonwn/jwks.json'
  },
  jwt: {
    audience: 'urn:id:app:my-app-slug',
    issuer: 'https://token-issuer.id.domain.com/'
  }
})

api.get('/secure-endpoint', jwt, (req, res) => {
  res.end('secured!')
})

api.get('/admin-only', jwt, scope('admin'), (req, res) => {
  res.end('secured!')
})

api.use(unauthorized((err) => {
  throw new HttpError.Unauthorized(err.reason, err.message)
}))

/@mantris/bearer/

    Package Sidebar

    Install

    npm i @mantris/bearer

    Weekly Downloads

    2

    Version

    6.2.6

    License

    MIT

    Unpacked Size

    8.3 kB

    Total Files

    7

    Last publish

    Collaborators

    • rwillians