restruct
paseto
Our great sponsors
restruct | paseto | |
---|---|---|
7 | 26 | |
15 | 3,193 | |
- | 0.3% | |
5.7 | 4.7 | |
4 months ago | 9 days ago | |
Go | PHP | |
MIT License | GNU General Public License v3.0 or later |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
restruct
-
what's your recommended router? chi, mux, something else?
For me it's mux and my personal router restruct but since mux is not maintained anymore, maybe chi will be my goto for new projects that needs more stability in the api. Since restruct is a router based on structs, which I use for fast prototyping.
- Created a minimal JSON API 'framework'
-
Best golang framework for microservice
Not the best, but after using gorilla mux for routing for a while, I've decided to build my own https://github.com/altlimit/restruct
-
Looking for advice for Go Backend REST API for a Front End React/NodeJS
I've always just use gorilla mux and try to stay close to standard handlers as much as possible and code my request response process. As I've done this multiple times and actually been doing things over and over again I've developed my own router based on structs. Most of the time I develop something that's not going to be public api so I just want to easily build endpoints from struct method without defining new routes. I made https://github.com/altlimit/restruct for it. I also made it flexible so it can do a good amount of routing config. Then with same idea on authentication I made gauth. It's under the same org of that repository. Just to make my development for clients faster while sticking close to standards. I can't find myself using those frameworks that keeps introducing their own context somehow. I did use them before but somehow just doesn't feel right.
- Added strongly typed handlers in RESTruct
- Is it possible to write a well-typed controller/handler in Go?
-
RESTruct a rest/route framework based on struct methods.
github.com/altlimit/restruct
paseto
-
JSON Web Proofs
Might I suggest Paseto (https://paseto.io/) - it solves a lot of the headaches of JWT. Signing and encryption are two different things that require two different sets of keys, so you can't mess it up.
(Full disclosure, I've written one implementation: https://github.com/auth70/paseto-ts)
-
Full-stack authentication system using rust (actix-web) and sveltekit
Though we'll be building a session-based authentication system, it's noteworthy that with the introduction of some concepts which will be discussed in due time, you can turn it into JWT- or, more securely and appropriately, PASETO-based authentication system.
- Biscuit 3.0
-
Securing Your Golang Application: Unleashing the Power of Authentication and Authorization
Time we ditch it and use paseto
- Paseto is everything you love about JWT without any of the design deficits
- Why JWTs Suck as Session Tokens (2017)
-
Looking for advice for Go Backend REST API for a Front End React/NodeJS
The PASETO web site goes over it. Mostly it's designed to make you do things the right way and avoid all the security holes you can fall into with JWT.
- Initial impact report about this week's EdDSA Double-PubKey Oracle attack in 40 affected crypto libs
-
Stop Storing Authentication Tokens in JS-accessible Storage
If this is too much to handle, you shouldn't have to! There's already solutions that handle it for you
What are some alternatives?
httprouter - A high performance HTTP request router that scales well
branca - :key: Secure alternative to JWT. Authenticated Encrypted API Tokens for Go.
waggy - The dead simple, easy-to-use library for writing HTTP handlers and routers in Go that can be used in standard HTTP server environments or in WAGI (Web Assembly Gateway Interface) environments
Symfony Panther - A browser testing and web crawling library for PHP and Symfony
flamego - A fantastic modular Go web framework with a slim core but limitless extensibility
wp-graphql-jwt-authentication - Authentication for WPGraphQL using JWT (JSON Web Tokens)
snug - Simple stdlib compatible router with shortcuts to dump json api things
Ory Hydra - OpenID Certified™ OpenID Connect and OAuth Provider written in Go - cloud native, security-first, open source API security for your infrastructure. SDKs for any language. Works with Hardware Security Modules. Compatible with MITREid.
Macaron - Package macaron is a high productive and modular web framework in Go.
php-jwt - PHP package for JWT
oapi-codegen - Generate Go client and server boilerplate from OpenAPI 3 specifications
bubble - bubble 旨在为项目快速开发提供一系列的基础能力,方便使用者根据项目需求快速进行功能拓展。已将所有 JAR 包都推送至中央仓库,也会为每个版本的升级改动列出详细的更新日志