{"repo":"santoshshinde2012/node-boilerplate","free":true,"listed":false,"github":"https://github.com/santoshshinde2012/node-boilerplate","clone":"git clone https://github.com/santoshshinde2012/node-boilerplate.git","description":"Node Typescript Boilerplate for Microservices. Skeleton for Node.js Apps written in TypeScript (with Setup Instructions for ESLint, Prettier, and Husky)","language":"TypeScript","stars":459,"topics":["typescript","boilerplate","nodejs","express","husky","prettier","eslint","starter-template","starter-kit","skeleton"],"license":"Apache-2.0","category":"saas-starters-boilerplates","readme_excerpt":"Node-Typescript-Boilerplate Production-ready skeleton for Node.js + TypeScript services with hardened security defaults. Purpose A batteries-included starting point for production Node.js services. Out of the box you get a hardened Express setup, structured JSON logging, encrypted-response support, Docker hardening, request tracing, graceful shutdown and a CI pipeline wired for SonarCloud / Snyk / CodeQL / njsscan / Code Climate. Star History Highlights - Quick start – TypeScript, ESLint flat config, Prettier, Husky, Jest with coverage. - Hardened security defaults - Helmet (HSTS in prod), x-powered-by disabled, x-request-id propagation. - Allow-list driven CORS via CORS ORIGINS . - Global rate limiter ( express-rate-limit , draft-7 standard headers). - Body size capped at 1 MB by default (configurable via BODY LIMIT ). - PBKDF2-HMAC-SHA512 key derivation at OWASP-2023 strength (600 000 iters) + AES-256-GCM with per-message salt + IV embedded in the ciphertext. - Production-mode filtering of system endpoints (no process.env , network interfaces or OS user info on the wire). - Centralized config validation – the app refuses to boot with bad/missing values. - Production runtime - Multi-stage Dockerfile on node:22-bookworm-slim , runs as non-root with tini as PID 1, healthcheck baked in. - docker-compose.yml with read only , cap drop: ALL , no-new-privileges and resource limits. - Graceful shutdown on SIGINT / SIGTERM with a 10 s drain window. - Structured Winston logging (separ","default_branch":null,"files":null,"tree":[],"storefront":"/r/santoshshinde2012","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/santoshshinde2012/node-boilerplate/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}