devkral / graphene-protector Goto Github PK
View Code? Open in Web Editor NEWgraphene, strawberry and plain graphql protection against malicious requests
License: MIT License
graphene, strawberry and plain graphql protection against malicious requests
License: MIT License
relay is currently completely untested. Especially with connections there could be hidden problems
The documentation could be improved.
Especially the exposed DEFAULT_LIMITS should be explained.
It could be used as a base for new backends like for bottles or flask
It maybe would be nice to have backends for flask,...
Currently we parse the ast, but resource attacks can be executed earlier (when the ast is built)
Is there a way to get the input string first and analyze it?
Or are we able to limit the AST builder in such a way, it cannot be abused? Eg. the stack can be exhausted by high depths before any validation takes place
Hello! Thank you for such a useful project!
Integration with Django, which is described in the README file does not work for me, because Graphene-Django
uses default backend instead of ProtectorBackend
.
I fixed this by passing the backend as a view parameter.
path("graphql", csrf_exempt(GraphQLView.as_view(graphiql=True, backend=ProtectorBackend())))
A declarative, efficient, and flexible JavaScript library for building user interfaces.
๐ Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. ๐๐๐
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google โค๏ธ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.