{"library":"express-security-txt","type":"library","category":null,"description":"Express middleware to serve a security.txt policy file at the standard /.well-known/security.txt or /security.txt endpoint. Current stable version 4.0.1. Released via semantic-release; adheres to the security.txt RFC draft (foudil-securitytxt-05). Key differentiators: supports repeating directives, inline comments (prefix, postfix, field-level), and array values for multiple contacts or policies. Lightweight—no external runtime dependencies; works with Express 4.x+. Safer alternatives exist (e.g., manual static file serving) if zero risk of misconfiguration is required.","language":"javascript","status":"active","version":"4.0.1","tags":["javascript"],"last_verified":"Wed May 27","install":[{"cmd":"npm install express-security-txt","imports":["import securityTxt from 'express-security-txt'","import { setup } from 'express-security-txt'","import type { SecurityTxtOptions } from 'express-security-txt'"]},{"cmd":"yarn add express-security-txt","imports":[]},{"cmd":"pnpm add express-security-txt","imports":[]}],"homepage":null,"github":"https://github.com/lirantal/express-security-txt","docs":null,"changelog":null,"pypi":null,"npm":"https://www.npmjs.com/package/express-security-txt","openapi_spec":null,"status_page":null,"smithery":null,"compatibility":{"summary":{"python_range":"18–22","success_rate":0,"avg_install_s":null,"avg_import_s":null,"wheel_type":null},"url":"https://checklist.day/v1/registry/express-security-txt/compatibility"}}