Interlace ESLint
ESLint Interlace
Express

Overview

Express.js security rules for CORS, headers, cookies, and CSRF

eslint-plugin-express-security

npm version npm downloads License: MIT codecov

9 specialized rules — LLM-optimized error messages with CWE, OWASP, and CVSS metadata.

Installation

npm install --save-dev eslint-plugin-express-security

Configuration

import expresssecurity from 'eslint-plugin-express-security';

export default [expresssecurity.configs.recommended];

Available Presets

PresetDescription
recommendedBalanced security for most projects
strictMaximum enforcement (all rules as errors)

Rules

Browse all rules with CWE and OWASP references:

Loading rules...

Initializing articles...

On this page