Packages

Input Sanitization & Security Packages

Input sanitization, XSS prevention, and application-security utilities that clean untrusted input before it reaches your rendering or storage layer (DOMPurify).

123 packages

Packages in Input Sanitization & Security

50Health
Library npm

cors

Node.js CORS middleware for Express and Connect that sets standards-compliant headers to control cross-origin browser access.

6,195
MIT
Used by 79
71Health
Library npm

helmet

Secure Node and Express apps by setting protective HTTP response headers with a single line of middleware.

10,736
MIT
Used by 32
81Health
Library npm

express-rate-limit

Basic IP rate-limiting middleware for Express to throttle repeated requests and protect public APIs and sensitive endpoints.

3,305
MIT
Used by 30
45Health
Library PyPI

markupsafe

Escapes untrusted strings for safe use in HTML and XML markup, preventing injection attacks in templated output.

697
BSD 3
Used by 20
66Health
Library npm

rate-limiter-flexible

Atomic and non-atomic counters and rate-limiting tools that protect against DoS and brute-force attacks at any scale

3,589
Other
Used by 16
79Health
Library npm

express-validator

A chainable Express middleware that wraps validator.js to validate and sanitize incoming request data with minimal boilerplate.

6,233
MIT
Used by 8
53Health
Library PyPI

slowapi

Rate limiting for Starlette and FastAPI endpoints, adapted from Flask-Limiter.

2,064
MIT
Used by 6
22Health
Library npm

csrf-sync

Stateful CSRF protection for Express using the Synchronizer Token Pattern, built to replace the deprecated csurf package.

42
Other
Used by 4
48Health
Library PyPI

Flask-Limiter

Rate limiting for Flask applications with pluggable storage backends and per-route limits

1,207
MIT
Used by 3
45Health
Library PyPI

django-csp

Content-Security-Policy header management for Django, with per-view overrides and nonce support.

624
BSD 3
Used by 3
76Health
Tool PyPI

Bandit

A static analysis tool that scans Python code for common security issues.

8,285
Apache 2.0
Used by 2
43Health
Library npm

csurf

CSRF token middleware for Express — archived by the Express team in 2025 and no longer maintained.

2,305
MIT
Used by 2
38Health
Library npm

nocache

Tiny Express/Connect middleware that sets HTTP headers to disable client-side response caching.

142
MIT
Used by 2
51Health
Library PyPI

python-ipware

Retrieve a client's real IP address from HTTP request headers, with proxy handling.

43
MIT
Used by 2
89Health
Library PyPI

Presidio Analyzer

The PII detection engine behind Presidio, combining NER, regex, and checksum recognizers

11,062
MIT
Used by 1
65Health
Library PyPI

RestrictedPython

Compiles a restricted subset of Python so you can define a trusted boundary for running untrusted code.

743
Other
Used by 1
70Health
Library PyPI

simpleeval

A single-file Python library for safely evaluating user-supplied expressions without exposing full eval() access.

613
MIT
Used by 1
37Health
Library npm

express-mongo-sanitize

Express middleware that strips MongoDB operator injection payloads from req.body, req.query, req.params, and req.headers before they reach your database queries.

219
MIT
Used by 1
31Health
Library PyPI

confusable_homoglyphs

Detect dangerous Unicode homoglyphs and mixed-script strings to stop impersonation attacks

166
MIT
Used by 1
32Health
SDK PyPI

altcha

Create and verify ALTCHA proof-of-work CAPTCHA challenges in Python with a zero-dependency, fully typed library.

33
MIT
Used by 1

Join founders buildingwith open source

Opinionated takes, migration guides, cost-saving tips, and insights from the open source ecosystem.

Subscribe on Substack
Join 750+ subscribers