firm-pound-attack
GraphQL IDE for better development workflows (GraphQL Subscriptions, interactive docs & collaboration).
A library to find JS RegExp with super-linear worst-case time complexity for attack strings that repeat a single character.
An AST parser for ICU MessageFormat strings
Strongly Typed GraphQL from the team at [GraphQL Editor](https://graphqleditor.com/)
GraphQL IDE for better development workflows (GraphQL Subscriptions, interactive docs & collaboration).
Sha1-Hulud 2.0 npm supply chain attack scanner - Real-time detection using Koi.ai data
A PEG.js parser for ICU MessageFormat strings
Scrypt Key Derivation Function
Generate Client Library for GraphQL Schema
The core `url` packaged standalone for use with Browserify.
Types for cspell and cspell-lib
No alias directive for graphql mutation and query types. It can limit the amount of alias fields that can be used for queries and mutations. Preventing batch attacks.
Limit the depth allowed in a GraphQL query.
Limit the number of aliases allowed in a GraphQL query.
Limit the number of directives allowed in a GraphQL query.
Limit the number of tokens allowed in a GraphQL document.
Create a security plugin for node.js
Constant-time comparison algorithm to prevent timing attacks.
Sanitize untrusted HTML (to prevent XSS) with a configuration specified by a Whitelist
An graphical interactive in-browser GraphQL IDE.
Digital Signal Processing for Javascript
Require scripts and styles to use Subresource Integrity
Educational demo: a deliberately vulnerable npm package showing how GitHub Actions cache poisoning can produce a malicious release without stealing any credential. Do NOT use in production.