Security
CSRF tokens, rate limits, and CORS policies. The hooks ship with the framework; the runtime that enforces them doesn't.
Holo-JS
Modular backend pieces for Nuxt, Next.js, and SvelteKit. Install what you need. Skip the rest.
What you pick is what you ship.
Why Holo-JS
Routing and rendering come in the box. The rest of a production backend doesn't.
CSRF tokens, rate limits, and CORS policies. The hooks ship with the framework; the runtime that enforces them doesn't.
Frameworks don't pick a database, an ORM, or a migration story. Every app wires it from scratch.
Sessions, tokens, password reset, social login. The route is yours. The system behind it isn't shipped.
Queues, workers, and retry logic live outside the request lifecycle. Frameworks don't ship them.
Local disks in dev, cloud buckets in prod. The bridge between the two is your problem.
Channels, listeners, presence, and broadcasts. Every app reinvents the wiring on top of the framework.
Features
No bundled bloat. No defaults you didn't choose. Install one module, install all, or swap drivers. The runtime stays the same.
@holo-js/dbTyped query builder, models, migrations, and seeders.
@holo-js/authSessions, providers, tokens, and social login.
@holo-js/sessionCookie sessions, stores, guards, and framework-safe session access.
@holo-js/authorizationPolicies, abilities, gates, and typed permission checks.
@holo-js/securityCSRF, CORS, rate limits, and request protection primitives.
@holo-js/queueBackground jobs with retries and failed-job tracking.
@holo-js/cacheDrivers, locks, and query-level caching.
@holo-js/storageFile storage across local and cloud drivers.
@holo-js/eventsListeners, queued listeners, and after-commit hooks.
@holo-js/broadcastRealtime channels, auth routes, and Flux helpers.
@holo-js/realtimeTyped queries, mutations, subscriptions, and live state wiring.
@holo-js/formsValidated server actions with framework adapters.
@holo-js/validationSchema contracts, typed parsing, and reusable validation surfaces.
@holo-js/mailMailables, fluent sending, previews, and delivery contracts.
@holo-js/notificationsNotification channels, dispatch helpers, and delivery routing.
@holo-js/mediaMedia collections, conversions, and model file attachments.
Beside, not instead of
Keep the routing, rendering, and conventions you already use. Holo-JS adds typed backend services with first-class adapters for each host.