Ecosyste.ms: OpenCollective

An open API service for software projects hosted on Open Collective.

github.com/koajs/koa-lusca

koa version of lusca. Application security for koa.
https://github.com/koajs/koa-lusca

chore: update https://registry.npm.taobao.org to https://registry.npmmirror.com (#20)

Co-authored-by: NPM Mirror Bot <npmmirror@localhost>

a5ce16f56be43e6620502e398477c5effa480f81 authored almost 3 years ago by Non-Official NPM Mirror Bot <[email protected]>
Release 2.2.0

4f424f9e73f1354994bbd20ea0c050d0add71324 authored over 8 years ago by shaoshuai0102 <[email protected]>
Feature/improve csp support (#11)

* Add suport for String and Array CSP policy rules

* Update CSP documentation

* Define ful...

0cf397016f59bfae04caf3b96a2da80f76ee24a1 authored over 8 years ago by Marek Fajkus <[email protected]>
Release 2.1.0

7ba2ceefa469547b021b9ab0f9349e4d81d43a9a authored over 9 years ago by fengmk2 <[email protected]>
Merge pull request #10 from gellerb/preload

Updated HSTS to support the preload flag

7218e3490c0275d3aa4b4b18161f99a55e379c86 authored over 9 years ago by fengmk2 <[email protected]>
Updated HSTS to support the preload flag

db56267f84d5504d93bda312e9f4e36e01179ba1 authored over 9 years ago by Geller <[email protected]>
Merge pull request #8 from koajs/hallas-patch-readme

Update README.md

69fae8f137f7dfd8abf504c8172deea6bb726a5b authored almost 10 years ago by fengmk2 <[email protected]>
Update README.md

f9f4655137dc2bdc920f42489c880d717b84b66b authored almost 10 years ago by Christoffer Hallas <[email protected]>
Release 2.0.1

79765bef23d4a5f4200dffecd929bedef136c300 authored almost 10 years ago by fengmk2 <[email protected]>
Merge pull request #6 from koa-modules/use_of_state

use of ctx.state

48ae9a957ebddea4d5c791ebc08e70818726a97e authored almost 10 years ago by fengmk2 <[email protected]>
use of ctx.state

e916cd300bfcc8bd920b437e9c83388ca57111f5 authored almost 10 years ago by fundon <[email protected]>
Release 2.0.0

927060242009e12ab8c7d96a6b462889e58003d0 authored almost 10 years ago by fengmk2 <[email protected]>
Merge pull request #4 from koajs/only-koa

Only koa

6e9ce311510b6104b78cd59de595f2ade77f9fbb authored almost 10 years ago by fengmk2 <[email protected]>
add more node versions

7c50e8f60d260a39bfdc17526a4a246f05661635 authored almost 10 years ago by fengmk2 <[email protected]>
refactor: only for koa

Fixes #2 #3

f4d9cdf9bac24014a18b48a8252538d235c51585 authored almost 10 years ago by fengmk2 <[email protected]>
merge from lusca master

459ab5e6ca22df65f58b7c5f8c2c3a2787654bf0 authored almost 10 years ago by fengmk2 <[email protected]>
Update README.md

f37271ae76120af34bce62ee404550c19bb91f8f authored about 10 years ago by Erik Toth <[email protected]>
Merge pull request #36 from knownasilya/patch-1

Add csp example options

b016a6ff57e796cb2582d083ae99373df920ffcd authored about 10 years ago by Aria Stewart <[email protected]>
Merge pull request #40 from grawk/master

bump to v1.0.2 in preparation to publish changes

95d28c7f9d51d173d1a9a8bc728753c28e3612ec authored about 10 years ago by Poornima Venkat <[email protected]>
remove console.log message

74f9cb9866fcabfd04cdbe4255146c13e5572ccb authored about 10 years ago by Matt Edelman <[email protected]>
1.0.2

2ad02e4a4c903f9a00cc15875df4c85c1d698793 authored about 10 years ago by Matt Edelman <[email protected]>
1.0.1

e74c1fdf3bc6f2df040244f73758d89ff7ecf852 authored about 10 years ago by Matt Edelman <[email protected]>
fix conflict

439037097258543ffa37e5a813f496e76e1cba9d authored about 10 years ago by Matt Edelman <[email protected]>
Merge pull request #38 from grawk/express-upgrade

upgrade unit tests for express 4.x

396de30b13688f33bceee3b3d22f40f1bfd65e04 authored over 10 years ago by Poornima Venkat <[email protected]>
fix formatting per PR comment, remove commented unused variable secretKey

1abf44c9ee6a573a0652ae605e13e29888cecf53 authored over 10 years ago by Matt Edelman <[email protected]>
use npm scripts

d756a1485583514d927b1eaecf70b5c094b00827 authored over 10 years ago by fengmk2 <[email protected]>
updating tests to fix any deprecation warnings, updating README

582d6e60b8b75bf92c85ecf406d1bc7e93edb823 authored over 10 years ago by Matt Edelman <[email protected]>
fix unit tests to work with both session and cookie-session

6a14c2fc27b1bb085be8ba52944238ccaa852804 authored over 10 years ago by Matt Edelman <[email protected]>
debug stmt. remove

24cddab7338d1e840a9abdb3658f8e611b2ae1f0 authored over 10 years ago by Matt Edelman <[email protected]>
adding stuffs

dae26876d285ef7419026ecbb7ed36d3c57bf7ad authored over 10 years ago by Matt Edelman <[email protected]>
adding req.session not available error handling

83625c16d67a550be0193295303840cd8047bcf5 authored over 10 years ago by Matt Edelman <[email protected]>
adding error condition if req.session is not available at time of token creation

33795e8077c412d92e74c2aaf58567103426c439 authored over 10 years ago by Matt Edelman <[email protected]>
Add csp example options

With a link to MDN's using csp article.

ef487249e76c3775e48ed84a4873539207a9adbe authored over 10 years ago by Ilya Radchenko <[email protected]>
some debug stmts

b56fdb3f597b09b0cc130600ae97280d9e5f71e6 authored over 10 years ago by Matt Edelman <[email protected]>
another debug stmt

fd44428c792f26b35e0c8c420d8ae74bca33881f authored over 10 years ago by Matt Edelman <[email protected]>
adding debug console stmt

49c720e8d0c10ec58adeecc159679ad6f91d0139 authored over 10 years ago by Matt Edelman <[email protected]>
debug middle step. remove console log

222adfff5537677788874495abfc9616fb4cc391 authored over 10 years ago by Matt Edelman <[email protected]>
adding express deps and mock

beb84deaec4f1a238f59e40b34bce2806d60a834 authored over 10 years ago by Matt Edelman <[email protected]>
fixing private variable underscore naming

69f3a5e657cf98ba626de292c4535d4eedd84750 authored over 10 years ago by Matt Edelman <[email protected]>
removing the mutable/global state issue by having token.create return token/validate method

90f55c3ba0887c1f0b9ab617fcc6b9e2bffcc24c authored over 10 years ago by Matt Edelman <[email protected]>
adding configurable secret key option, readme, and test

a871c0a7f2b6641fb882d2b902b0910f6ac60b7b authored over 10 years ago by Matt Edelman <[email protected]>
Merge pull request #31 from aredridel/fix-readme-parens

Fix closing parentheses in example code. Closes #30.

6012bc3d9c23f855293cab0c265ef5ab0bd24386 authored over 10 years ago by Jean-Charles Sisk <[email protected]>
Fix closing parentheses in example code. Closes #30.

c7d1a283ccce011b687a8f544fc65b1aba999226 authored over 10 years ago by Aria Stewart <[email protected]>
Merge pull request #28 from anant-singh/master

Added option of verifying csrf token through custom http header

6e0f3919d4f2dc1759130f76613426be7901689a authored over 10 years ago by Jeff Harrell <[email protected]>
Added option of verifying csrf token through custom http header

ea223a7f497edb203110d9a7a5b863ffaaa7c869 authored over 10 years ago by Anant Singh <[email protected]>
Release 1.1.2

30b222ffbeb27ec51171e5c9abc7b2cad58d1f4a authored over 10 years ago by fengmk2 <[email protected]>
Xframes support enable detect options

4ab8eaf15ed03e5a099eb681560d2bcdcadc632b authored over 10 years ago by fengmk2 <[email protected]>
Release 1.1.1

9427998717be2661578ebc360eb7c80576b385f4 authored over 10 years ago by fengmk2 <[email protected]>
support X-Content-Type-Options

9a588ffb27e212dc3fe0a0424ea68414f9547bb0 authored over 10 years ago by fengmk2 <[email protected]>
update to 1.1.0

891278bebd9455eed72cab5045041162df6efc04 authored over 10 years ago by fengmk2 <[email protected]>
fix koa-compose deps

52c8df5bca2a44fd1eb0e6843ad30af0cabb81bb authored over 10 years ago by fengmk2 <[email protected]>
add fork link

113b44bd9905460dde4e0d2d005be75c1c37a83c authored over 10 years ago by fengmk2 <[email protected]>
fix test

393b1491596a126d617ea43c34b1b4553dcf1f4e authored over 10 years ago by fengmk2 <[email protected]>
add koa version lusca

f9685c30383fb377632e3d08ff6e9d3285a1a458 authored over 10 years ago by fengmk2 <[email protected]>
add koa usage

77d6a6ed6f9a484abb93a3374e7001455dd2d303 authored over 10 years ago by fengmk2 <[email protected]>
make hsts, p3p, xss, xframe support koa

f36fcd86ebb00cb7e04746f63c615addd071ced5 authored over 10 years ago by fengmk2 <[email protected]>
csrf and csp support koa

b6df37d6a14787ce387d343834ecab5af7be74e8 authored over 10 years ago by fengmk2 <[email protected]>
Merge pull request #23 from sahat/patch-1

SVG badges

63f970bda694f257973cc5960b14d73dead894b7 authored over 10 years ago by totherik <[email protected]>
SVG badges

Looks nice and sharp on hi-dpi displays.

58bae91ea228274fc460033e818d8260d4db011a authored over 10 years ago by Sahat Yalkabov <[email protected]>
Update README.md

d8b67f3a7b950c3fafce2f125ccddd96ba9890cd authored over 10 years ago by Jeff Harrell <[email protected]>
Update package.json

bdf35b1b92c46474f876c635deddd390f3c9a618 authored over 10 years ago by Jeff Harrell <[email protected]>
Merge pull request #20 from runk/xss-boolean-enabled

Handle boolean values properly in xss protection

8f156dc87cc25833702f702a1248ab41cedf3ab5 authored almost 11 years ago by Jeff Harrell <[email protected]>
Handle boolean values properly in xss protection

40c7e02191e3bbd1efd33bd8c060aece5eee53d4 authored almost 11 years ago by Dmitry Shirokov <[email protected]>
1.0.0

622ced3c155daa136ee0bb64df1ac4935ea98da3 authored almost 11 years ago by Jeff Harrell <[email protected]>
Merge pull request #17 from bluelnkd/master

Correcting header value and implementation of report-uri

2f33d90a1d085380ad5fe26eb921821500e4da89 authored almost 11 years ago by Jeff Harrell <[email protected]>
Updating report-uri header per browser implementation

484b407cf8d973d03e506911cce8a0797bcfe742 authored almost 11 years ago by swesthafer <[email protected]>
Merge pull request #13 from paypal/refactoring-csrf

Refactoring CSRF implementation

bec96516fc5cf3a4004207d55de239f0ecda9193 authored almost 11 years ago by Jeff Harrell <[email protected]>
Fixing after pulling in upstream xss protection changes

0926ccfe11a0f32bf308ebba2efaaf657a41d0bc authored almost 11 years ago by Jeff Harrell <[email protected]>
Mering upstream fix

c9902e867f49ba0c7bb9981732c519d8920e01a0 authored almost 11 years ago by Jeff Harrell <[email protected]>
Merge pull request #14 from mstuart/master

Add support for X-XSS-Protection header.

09990a2b963d532eb87d6d98ef7013cdabedc4bf authored almost 11 years ago by Jeff Harrell <[email protected]>
Add optional value to xssProtection docs

624cf45667c666da549b03de6734a86b83e21f20 authored almost 11 years ago by mstuart <[email protected]>
Added build/npm badges.

031700fbbd03bac0d1844d8c998b06d022b77690 authored almost 11 years ago by Lenny Markus <[email protected]>
Merge pull request #16 from lmarkus/add-travis-ci

Added travis-ci integration. Fixes #15

d656883be8fc8d227030b2594416c08609c17581 authored almost 11 years ago by Lenny Markus <[email protected]>
Added travis-ci integration. Fixes #15

ff0a18e981ff289e0cb312ecb8366b32dd1f8b2d authored almost 11 years ago by lmarkus <[email protected]>
Make xssProtection value configurable with a good default.

4a4372a4e3f863296e3ccfd8489a5df0e81ec56b authored almost 11 years ago by mstuart <[email protected]>
Add support for X-XSS-Protection header.

3bf652fabe4a3c7d698f3e365edf13ca6b34afe6 authored almost 11 years ago by mstuart <[email protected]>
token implementation cleanup

284b7b2962cd9df59f7ecbeccc92ed57f4064ebf authored almost 11 years ago by Jeff Harrell <[email protected]>
Doc updates

b76d91f32c4fa39a0debf1d1b643ba2c8555b2f0 authored almost 11 years ago by Jeff Harrell <[email protected]>
Test cleanup and adding a few test cases

f50317d553dbe1928b2581c4838060cb530c16f8 authored almost 11 years ago by Jeff Harrell <[email protected]>
Making token implementation overridable

a24166a1023c94b9a7885e81584115fe79b6c658 authored almost 11 years ago by Jeff Harrell <[email protected]>
Updating token algo

304f5fd4ec4d4cdab5a52abb7c7efc4bbb965560 authored almost 11 years ago by Jeff Harrell <[email protected]>
Merge pull request #12 from AlexSantos/correct-copyright-year

correct copyright year

05342737ab0cc1e6257af4b2eb52b79019ad162d authored almost 11 years ago by totherik <[email protected]>
remove duplicate ebay

c76e9ec2cff071637752a3a7f6a9947d5140d4ad authored almost 11 years ago by AlexSantos <[email protected]>
correct copyright year

e26e0e617f3628ff53cf1ea81b9734a3492990be authored almost 11 years ago by AlexSantos <[email protected]>
A few README clarifications

0fede2c1c07a9e63e11b705453973161d1edda67 authored almost 11 years ago by Jeff Harrell <[email protected]>
Fixes to fixes

f96f2aa5a3a84b79b98bbaeac8d2eecdcef2e157 authored almost 11 years ago by Jeff Harrell <[email protected]>
README updates

947ac8cdb8b7fb6042dc42a2f136be9b3d38097e authored almost 11 years ago by Jeff Harrell <[email protected]>
Updating CSRF middleware to not depend on express and be overrideable

27f39f4c67595e9e1cfe112b1585162796a0c70c authored almost 11 years ago by Jeff Harrell <[email protected]>
Moving methods over to lib/

458a70bc045435f6e13f964c4d01d723393d63ec authored almost 11 years ago by Jeff Harrell <[email protected]>
Renaming 'appsec' to 'lusca'

c34d2a71dce80d86f5f774c1a1fdffe566fc12d3 authored almost 11 years ago by Jeff Harrell <[email protected]>
refactorizing when checking which options are set

0b74644be49f4bf33f4819a07b4cb629f0513dce authored almost 11 years ago by Jeff Harrell <[email protected]>
Removing license placeholder

5067d5b321c507bb7da890efe410982ece1cac3a authored almost 11 years ago by Jeff Harrell <[email protected]>
Merge pull request #11 from rragan/master

Add support for HSTS header. Issue #10

e556c7da652e3ce662c27d6755f95b1eefb43370 authored almost 11 years ago by Jeff Harrell <[email protected]>
Add support for HSTS header. Issue #10

f976f8a782b8f221a0fe32e5ccbc23bd684e9e6e authored almost 11 years ago by rragan <[email protected]>
Merge pull request #9 from lmarkus/fix-superagent-tests

Took error into account on superagent tests

40af48ed34fc00351caa3b7be8d3a0c8d43cb012 authored about 11 years ago by Jeff Harrell <[email protected]>
Took error into account on superagent tests

2f557e6d46d9e3dd14b6b45df02b7ce54a1a8c4e authored about 11 years ago by lmarkus <[email protected]>
Merge pull request #3 from paypal/npmignore

fix npmignore

e9750d8c29e5b597493e30ed63990e4408980f75 authored about 11 years ago by Jeff Harrell <[email protected]>
Merge pull request #6 from sstedman/make-to-grunt

Migrated Makefile to Gruntfile to be consistent w/Kraken-js. +CHANGELOG

a7cfba9c40c4c21f2e3f344b3bc9cecc34cfaf47 authored about 11 years ago by totherik <[email protected]>
Adding engineStrict:true to package.json

7eb892b0e6b1af7454147a8e5cce05512a159ab9 authored about 11 years ago by Steve Stedman <[email protected]>
Increased JSHint coverage.

83b6a428eb6571f2fb5583d785b30ccbb95213e7 authored about 11 years ago by Steve Stedman <[email protected]>