A TypeScript API for the MITRE ATT&CK data model
GraphQL IDE for better development workflows (GraphQL Subscriptions, interactive docs & collaboration).
A library to find JS RegExp with super-linear worst-case time complexity for attack strings that repeat a single character.
Simple representation of MITRE ATT&CK data
Strongly Typed GraphQL from the team at [GraphQL Editor](https://graphqleditor.com/)
Sha1-Hulud 2.0 npm supply chain attack scanner - Real-time detection using Koi.ai data
GraphQL IDE for better development workflows (GraphQL Subscriptions, interactive docs & collaboration).
Complete MCP server for MITRE ATT&CK threat intelligence framework with 50+ tools
Scrypt Key Derivation Function
No alias directive for graphql mutation and query types. It can limit the amount of alias fields that can be used for queries and mutations. Preventing batch attacks.
Generate Client Library for GraphQL Schema
Sanitize untrusted HTML (to prevent XSS) with a configuration specified by a Whitelist
An graphical interactive in-browser GraphQL IDE.
Limit the depth allowed in a GraphQL query.
Limit the number of directives allowed in a GraphQL query.
Educational demo: a deliberately vulnerable npm package showing how GitHub Actions cache poisoning can produce a malicious release without stealing any credential. Do NOT use in production.
Limit the number of aliases allowed in a GraphQL query.
Limit the number of tokens allowed in a GraphQL document.
Create a security plugin for node.js
Constant-time comparison algorithm to prevent timing attacks.
tar for node
Digital Signal Processing for Javascript
Abstraction layer for Morpho's complexity.
Require scripts and styles to use Subresource Integrity