Search results
1000+ packages found
Sort by: Default
- Default
- Most downloaded this week
- Most downloaded this month
- Most dependents
- Recently published
Safer Node.js Buffer API
Standard Subresource Integrity library -- parses, serializes, generates, and verifies integrity metadata according to the SRI spec.
DOMPurify is a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. It's written in JavaScript and works in all modern browsers (Safari, Opera (15+), Internet Explorer (10+), Firefox and Chrome - as well as almost anything else usin
JavaScript library of crypto standards.
JSON parse with prototype poisoning protection
Audited & minimal 0-dependency JS implementation of SHA, RIPEMD, BLAKE, HMAC, HKDF, PBKDF & Scrypt
JavaScript implementation of The Update Framework (TUF)
TUF metadata models
help secure Express/Connect apps with various HTTP headers
- express
- security
- headers
- backend
- content-security-policy
- cross-origin-embedder-policy
- cross-origin-opener-policy
- cross-origin-resource-policy
- origin-agent-cluster
- referrer-policy
- strict-transport-security
- x-content-type-options
- x-dns-prefetch-control
- x-download-options
- View more
Sanitize untrusted HTML (to prevent XSS) with a configuration specified by a Whitelist
Sanitize untrusted CSS with a configuration specified by a Whitelist. 根据白名单过滤CSS
- sanitization
- xss
- sanitize
- sanitisation
- input
- security
- escape
- encode
- filter
- validator
- html
- css
- injection
- whitelist
Basic IP rate-limiting middleware for Express. Use to limit repeated requests to public APIs and/or endpoints such as password reset.
- express-rate-limit
- express
- rate
- limit
- ratelimit
- rate-limit
- middleware
- ip
- auth
- authorization
- security
- brute
- force
- bruteforce
- View more
General purpose crypto utilities
Make a regular expression time out if it takes too long to execute
Node.js rate limiter by key and protection from DDoS and Brute-Force attacks in process Memory, Redis, MongoDb, Memcached, MySQL, PostgreSQL, Cluster or PM
- ratelimter
- authorization
- security
- rate
- limit
- bruteforce
- throttle
- redis
- mongodb
- dynamodb
- mysql
- postgres
- prisma
- koa
- View more
Makes it possible to use DOMPurify on server and client in the same way.
- security
- dompurify
- xss-filter
- xss
- isomorphic
- wrapper
- universal
- ssr
- html-escape
- sanitize
- sanitize-html
- sanitizer
Make a synchronous function have a timeout
Security rules for eslint
Secure random numbers of any size in any base
realistic password strength estimation
- password
- passphrase
- security
- authentication
- strength
- meter
- quality
- estimation
- pattern
- cracking
- scoring
- entropy
- bruteforce