Security
Security tools, vulnerability scanners, and security-focused utilities. Packages among the 3,000 most downloaded in the past 90 days.
-
-
-
-
credentials_obfuscation 3.5.0
Helper library that obfuscates sensitive values in process state
-
sobelow 0.14.0
Security-focused static analysis for Elixir & the Phoenix framework
-
cors_plug 3.0.3
An Elixir Plug that adds Cross-Origin Resource Sharing (CORS) headers to requests and responds to preflight requests (OPTIONS).
-
-
mix_audit 2.1.5
MixAudit provides a `mix deps.audit` task to scan a project Mix dependencies for known Elixir security vulnerabilities
-
-
ex_rated 2.1.0
ExRated, the OTP GenServer with the naughty name that allows you to rate-limit calls to any service that requires it. For example, rate-limit calls to your favorite API which requires no more than `limit` API calls within a `scale` milliseconds time window.
-
-
-
-
plug_attack 0.4.3
A plug building toolkit for blocking and throttling abusive requests.
-
-
-
sensitive_data 0.1.0
A library for manipulating sensitive/private/confidential data and avoiding data leaks.
-
plug_signature 0.11.0
Server side implementation of IETF HTTP signature draft as a reusable Plug
-
-
encrypted_secrets 0.3.0
A package that allows you to store encrypted application secrets in your VCS
-
content_security_policy 1.0.3
ContentSecurityPolicy makes working with the `"Content-Security-Policy"` response header simple.
-
paseto 1.5.0
An Elixir implementation of the Paseto (Platform Agnostic Security Token) protocol.
-
A Plug module for inserting a Content Security Policy header into the response. Supports generating nonces as specified in CSP Level 2.
-
-
-
google_api_cloud_kms 0.43.0
Cloud Key Management Service (KMS) API client library. Manages keys and performs cryptographic operations in a central cloud service, for direct use by other cloud resources and applications.
-
recaptcha 3.1.0
A simple reCaptcha package for Elixir applications, provides verification and templates for rendering forms with the reCaptcha widget.
-
libvault 0.2.4
Highly configurable library for HashiCorp's Vault - handles authentication for multiple backends, and reading, writing, listing, and deleting secrets for a variety of engines.
-
-
google_api_iam_credentials 0.15.0
IAM Service Account Credentials API client library. Creates short-lived credentials for impersonating IAM service accounts. Disabling this API also disables the IAM API (iam.googleapis.com). However, enabling this API doesn't enable the IAM API.
-
-
cloudfront_signer 1.0.0
Elixir implementation of Cloudfront's url signature algorithm.
-
absinthe_security 0.1.0
This library provides security utilities to validate a GraphQL query before executing it.
-
sigaws_otp_24 1.0.0
An Elixir library to sign and verify HTTP requests using AWS Signature V4.
-
site_encrypt 0.6.0
Integrated certification via Let's encrypt for Elixir-powered sites
-
cors_builder 2.0.5
A CORS Builder, performing validation and injection of CORS for misp, wisp and any framework!
-
-
-
-
dune 0.3.14
A sandbox for Elixir to safely evaluate untrusted code from user input
-
-
-
-
-
-
phoenix_ddos 1.1.20
High performance application-layer DDoS protection for Elixir Phoenix
-
vaultex 1.0.1
A very simple read only client that authenticates and reads secrets from HashiCorp's Vault.
-
-
-
-
plug_body_digest 0.7.0
Server side implementation of RFC3230 Instance Digests as a Plug
-
sigaws 0.7.2
An Elixir library to sign and verify HTTP requests using AWS Signature V4.
-
-
-
-
sandbox 0.5.0
Sandbox provides restricted, isolated scripting environments for Elixir through the use of Lua by wrapping Robert Virding's Luerl library.
-
-
rate_limiter 0.4.0
A high performance rate limiter on top of erlang atomics for Elixir
-
altcha 0.2.0
A lightweight library for creating and verifying ALTCHA challenges.