HTTP-friendly error objects
Lead Maintainer: Adam Bretz
boom provides a set of utilities for returning HTTP errors. Each utility returns a Boom
error response
object (instance of Error
) which includes the following properties:
isBoom
- iftrue
, indicates this is aBoom
object instance.isServer
- convenience bool indicating status code >= 500.message
- the error message.output
- the formatted response. Can be directly manipulated after object construction to return a custom error response. Allowed root keys:statusCode
- the HTTP status code (typically 4xx or 5xx).headers
- an object containing any HTTP headers where each key is a header name and value is the header content.payload
- the formatted object used as the response payload (stringified). Can be directly manipulated but any changes will be lost ifreformat()
is called. Any content allowed and by default includes the following content:statusCode
- the HTTP status code, derived fromerror.output.statusCode
.error
- the HTTP status message (e.g. 'Bad Request', 'Internal Server Error') derived fromstatusCode
.message
- the error message derived fromerror.message
.
- inherited
Error
properties.
The Boom
object also supports the following method:
reformat()
- rebuildserror.output
using the other object properties.
- Helper methods
- HTTP 4xx Errors
- 400:
Boom.badRequest([message], [data])
- 401:
Boom.unauthorized([message], [scheme], [attributes])
- 403:
Boom.forbidden([message], [data])
- 404:
Boom.notFound([message], [data])
- 405:
Boom.methodNotAllowed([message], [data])
- 406:
Boom.notAcceptable([message], [data])
- 407:
Boom.proxyAuthRequired([message], [data])
- 408:
Boom.clientTimeout([message], [data])
- 409:
Boom.conflict([message], [data])
- 410:
Boom.resourceGone([message], [data])
- 411:
Boom.lengthRequired([message], [data])
- 412:
Boom.preconditionFailed([message], [data])
- 413:
Boom.entityTooLarge([message], [data])
- 414:
Boom.uriTooLong([message], [data])
- 415:
Boom.unsupportedMediaType([message], [data])
- 416:
Boom.rangeNotSatisfiable([message], [data])
- 417:
Boom.expectationFailed([message], [data])
- 422:
Boom.badData([message], [data])
- 428:
Boom.preconditionRequired([message], [data])
- 429:
Boom.tooManyRequests([message], [data])
- 400:
- HTTP 5xx Errors
- FAQ
Decorates an error with the boom properties where:
error
- the error object to wrap. Iferror
is already a boom object, returns back the same object.statusCode
- optional HTTP status code. Defaults to500
.message
- optional message string. If the error already has a message, it adds the message as a prefix. Defaults to no message.
var error = new Error('Unexpected input');
Boom.wrap(error, 400);
Generates an Error
object with the boom decorations where:
statusCode
- an HTTP error code number. Must be greater or equal 400.message
- optional message string.data
- additional error data set toerror.data
property.
var error = Boom.create(400, 'Bad request', { timestamp: Date.now() });
Returns a 400 Bad Request error where:
message
- optional message.data
- optional additional error data.
Boom.badRequest('invalid query');
Generates the following response payload:
{
"statusCode": 400,
"error": "Bad Request",
"message": "invalid query"
}
Returns a 401 Unauthorized error where:
message
- optional message.scheme
can be one of the following:- an authentication scheme name
- an array of string values. These values will be separated by ', ' and set to the 'WWW-Authenticate' header.
attributes
- an object of values to use while setting the 'WWW-Authenticate' header. This value is only used whenschema
is a string, otherwise it is ignored. Every key/value pair will be included in the 'WWW-Authenticate' in the format of 'key="value"' as well as in the response payload under theattributes
key.null
andundefined
will be replaced with an empty string. Ifattributes
is set,message
will be used as the 'error' segment of the 'WWW-Authenticate' header. Ifmessage
is unset, the 'error' segment of the header will not be present andisMissing
will be true on the error object.
If either scheme
or attributes
are set, the resultant Boom
object will have the 'WWW-Authenticate' header set for the response.
Boom.unauthorized('invalid password');
Generates the following response:
"payload": {
"statusCode": 401,
"error": "Unauthorized",
"message": "invalid password"
},
"headers" {}
Boom.unauthorized('invalid password', 'sample');
Generates the following response:
"payload": {
"statusCode": 401,
"error": "Unauthorized",
"message": "invalid password",
"attributes": {
"error": "invalid password"
}
},
"headers" {
"WWW-Authenticate": "sample error=\"invalid password\""
}
Boom.unauthorized('invalid password', 'sample', { ttl: 0, cache: null, foo: 'bar' });
Generates the following response:
"payload": {
"statusCode": 401,
"error": "Unauthorized",
"message": "invalid password",
"attributes": {
"error": "invalid password",
"ttl": 0,
"cache": "",
"foo": "bar"
}
},
"headers" {
"WWW-Authenticate": "sample ttl=\"0\", cache=\"\", foo=\"bar\", error=\"invalid password\""
}
Returns a 403 Forbidden error where:
message
- optional message.data
- optional additional error data.
Boom.forbidden('try again some time');
Generates the following response payload:
{
"statusCode": 403,
"error": "Forbidden",
"message": "try again some time"
}
Returns a 404 Not Found error where:
message
- optional message.data
- optional additional error data.
Boom.notFound('missing');
Generates the following response payload:
{
"statusCode": 404,
"error": "Not Found",
"message": "missing"
}
Returns a 405 Method Not Allowed error where:
message
- optional message.data
- optional additional error data.
Boom.methodNotAllowed('that method is not allowed');
Generates the following response payload:
{
"statusCode": 405,
"error": "Method Not Allowed",
"message": "that method is not allowed"
}
Returns a 406 Not Acceptable error where:
message
- optional message.data
- optional additional error data.
Boom.notAcceptable('unacceptable');
Generates the following response payload:
{
"statusCode": 406,
"error": "Not Acceptable",
"message": "unacceptable"
}
Returns a 407 Proxy Authentication Required error where:
message
- optional message.data
- optional additional error data.
Boom.proxyAuthRequired('auth missing');
Generates the following response payload:
{
"statusCode": 407,
"error": "Proxy Authentication Required",
"message": "auth missing"
}
Returns a 408 Request Time-out error where:
message
- optional message.data
- optional additional error data.
Boom.clientTimeout('timed out');
Generates the following response payload:
{
"statusCode": 408,
"error": "Request Time-out",
"message": "timed out"
}
Returns a 409 Conflict error where:
message
- optional message.data
- optional additional error data.
Boom.conflict('there was a conflict');
Generates the following response payload:
{
"statusCode": 409,
"error": "Conflict",
"message": "there was a conflict"
}
Returns a 410 Gone error where:
message
- optional message.data
- optional additional error data.
Boom.resourceGone('it is gone');
Generates the following response payload:
{
"statusCode": 410,
"error": "Gone",
"message": "it is gone"
}
Returns a 411 Length Required error where:
message
- optional message.data
- optional additional error data.
Boom.lengthRequired('length needed');
Generates the following response payload:
{
"statusCode": 411,
"error": "Length Required",
"message": "length needed"
}
Returns a 412 Precondition Failed error where:
message
- optional message.data
- optional additional error data.
Boom.preconditionFailed();
Generates the following response payload:
{
"statusCode": 412,
"error": "Precondition Failed"
}
Returns a 413 Request Entity Too Large error where:
message
- optional message.data
- optional additional error data.
Boom.entityTooLarge('too big');
Generates the following response payload:
{
"statusCode": 413,
"error": "Request Entity Too Large",
"message": "too big"
}
Returns a 414 Request-URI Too Large error where:
message
- optional message.data
- optional additional error data.
Boom.uriTooLong('uri is too long');
Generates the following response payload:
{
"statusCode": 414,
"error": "Request-URI Too Large",
"message": "uri is too long"
}
Returns a 415 Unsupported Media Type error where:
message
- optional message.data
- optional additional error data.
Boom.unsupportedMediaType('that media is not supported');
Generates the following response payload:
{
"statusCode": 415,
"error": "Unsupported Media Type",
"message": "that media is not supported"
}
Returns a 416 Requested Range Not Satisfiable error where:
message
- optional message.data
- optional additional error data.
Boom.rangeNotSatisfiable();
Generates the following response payload:
{
"statusCode": 416,
"error": "Requested Range Not Satisfiable"
}
Returns a 417 Expectation Failed error where:
message
- optional message.data
- optional additional error data.
Boom.expectationFailed('expected this to work');
Generates the following response payload:
{
"statusCode": 417,
"error": "Expectation Failed",
"message": "expected this to work"
}
Returns a 422 Unprocessable Entity error where:
message
- optional message.data
- optional additional error data.
Boom.badData('your data is bad and you should feel bad');
Generates the following response payload:
{
"statusCode": 422,
"error": "Unprocessable Entity",
"message": "your data is bad and you should feel bad"
}
Returns a 428 Precondition Required error where:
message
- optional message.data
- optional additional error data.
Boom.preconditionRequired('you must supply an If-Match header');
Generates the following response payload:
{
"statusCode": 428,
"error": "Precondition Required",
"message": "you must supply an If-Match header"
}
Returns a 429 Too Many Requests error where:
message
- optional message.data
- optional additional error data.
Boom.tooManyRequests('you have exceeded your request limit');
Generates the following response payload:
{
"statusCode": 429,
"error": "Too Many Requests",
"message": "you have exceeded your request limit"
}
All 500 errors hide your message from the end user. Your message is recorded in the server log.
Returns a 500 Internal Server Error error where:
message
- optional message.data
- optional additional error data.
Boom.badImplementation('terrible implementation');
Generates the following response payload:
{
"statusCode": 500,
"error": "Internal Server Error",
"message": "An internal server error occurred"
}
Returns a 501 Not Implemented error where:
message
- optional message.data
- optional additional error data.
Boom.notImplemented('method not implemented');
Generates the following response payload:
{
"statusCode": 501,
"error": "Not Implemented",
"message": "method not implemented"
}
Returns a 502 Bad Gateway error where:
message
- optional message.data
- optional additional error data.
Boom.badGateway('that is a bad gateway');
Generates the following response payload:
{
"statusCode": 502,
"error": "Bad Gateway",
"message": "that is a bad gateway"
}
Returns a 503 Service Unavailable error where:
message
- optional message.data
- optional additional error data.
Boom.serverTimeout('unavailable');
Generates the following response payload:
{
"statusCode": 503,
"error": "Service Unavailable",
"message": "unavailable"
}
Returns a 504 Gateway Time-out error where:
message
- optional message.data
- optional additional error data.
Boom.gatewayTimeout();
Generates the following response payload:
{
"statusCode": 504,
"error": "Gateway Time-out"
}
There is a reason the values passed back in the response payloads are pretty locked down. It's mostly for security and to not leak any important information back to the client. This means you will need to put in a little more effort to include extra information about your custom error. Check out the "Error transformation" section in the hapi documentation.