Skip to content
JS
Package category

Security

Sanitisation, CSRF, CORS, helmet, secrets and vulnerability tooling.

514 packages2 comparisons

Packages compared

514 packages
PackageWeekly downloads12-month change52 weeksGzipLast releaseModuleTypesCategories
xposedornot
Official Node.js client for the XposedOrNot API - Check for data breaches and exposed credentials
1.1k--2 months ago
0.2.0
ESM + CommonJSBundledEmail, Security
eslint-plugin-require-form-method
Disallow form tags without explicit method attribute
1.1k-69%-2 years ago
1.1.0
CommonJSNoneLinting and formatting, Security
@lambda-middleware/cors
AWS lambda middleware for automatically adding CORS headers
1.1k---1 year ago
2.1.0
CommonJSBundledCloud SDKs, Security
elysiajs-helmet
A comprehensive security middleware for Elysia.js applications that helps secure your apps by setting various HTTP headers.
1.1k+58%-5 months ago
1.0.5
ESM + CommonJSBundledSecurity
@humanspeak/svelte-purify
Safe HTML rendering for Svelte powered by DOMPurify. SSR-ready, browser-only entry, and edge-friendly options.
1.1k---2 months ago
0.0.8
ESM onlyBundledSecurity, Svelte
escape-sql-string
Simple SQL string escape.
1k-89%--
1.2.2
CommonJSBundledSecurity
@archbase/security-ui
Security UI components for Archbase React - Forms, Modals, and Views
1k---13 days ago
4.12.0
ESM + CommonJSBundledSecurity, React
great-cto
One command install for the great_cto Claude Code plugin. Auto-detects your stack, picks the right archetype, bootstraps PROJECT.md.
1k--1 day ago
3.34.0
ESM onlyNoneCLI tools and terminal utilities, Testing
@danielsogl/lighthouse-mcp
A comprehensive Model Context Protocol (MCP) server that provides web performance auditing, accessibility testing, SEO analysis, security assessment, and Core Web Vitals monitoring using Google Lighthouse. Enables LLMs and AI agents to perform detailed we
1k---1 month ago
2.0.1
ESM onlyBundledAccessibility, Security
sanitize-basename
Sanitize a file name for cross-platform validity.
930---1 year ago
2.0.2
ESM onlyBundledSecurity
clean-obj
Clean objects recursively, deleting undefined & null or falsy properties
645---10 years ago
1.0.1
CommonJSNoneSecurity
prooflayer-agent-security
Security scanner MCP server for AI coding agents. Prompt injection firewall, package hallucination detection (4.3M+ packages), 1700+ vulnerability rules with AST & taint analysis, LLM-powered semantic code review, auto-fix. For Claude Code, Cursor, Windsu
437---6 months ago
4.0.0
ESM onlyNoneSecurity
urisanity
vet URIs in web and web-like applications with confidence
99----
0.1.6
ESM + CommonJSBundledSecurity
honeyjs
An open source Javascript HoneyPot library
32----
1.1.3
CommonJSNoneSecurity

12-month change compares the average of the last 4 weeks of downloads with the first 4 weeks of the 52-week series. Gzip size is for the whole package, as measured by Bundlephobia. "-" means the value has not been fetched.

  • xposedornotOfficial Node.js client for the XposedOrNot API - Check for data breaches and exposed credentials
  • eslint-plugin-require-form-methodDisallow form tags without explicit method attribute
  • @lambda-middleware/corsAWS lambda middleware for automatically adding CORS headers
  • elysiajs-helmetA comprehensive security middleware for Elysia.js applications that helps secure your apps by setting various HTTP headers.
  • @humanspeak/svelte-purifySafe HTML rendering for Svelte powered by DOMPurify. SSR-ready, browser-only entry, and edge-friendly options.
  • escape-sql-stringSimple SQL string escape.
  • @archbase/security-uiSecurity UI components for Archbase React - Forms, Modals, and Views
  • great-ctoOne command install for the great_cto Claude Code plugin. Auto-detects your stack, picks the right archetype, bootstraps PROJECT.md.
  • @danielsogl/lighthouse-mcpA comprehensive Model Context Protocol (MCP) server that provides web performance auditing, accessibility testing, SEO analysis, security assessment, and Core Web Vitals monitoring using Google Lighthouse. Enables LLMs and AI agents to perform detailed we
  • sanitize-basenameSanitize a file name for cross-platform validity.
  • clean-objClean objects recursively, deleting undefined & null or falsy properties
  • prooflayer-agent-securitySecurity scanner MCP server for AI coding agents. Prompt injection firewall, package hallucination detection (4.3M+ packages), 1700+ vulnerability rules with AST & taint analysis, LLM-powered semantic code review, auto-fix. For Claude Code, Cursor, Windsu
  • urisanityvet URIs in web and web-like applications with confidence
  • honeyjsAn open source Javascript HoneyPot library