Blog

Brad Wood

September 05, 2012

Spread the word


Share your thoughts

 

ColdBox handlers all support these simple AOP-style methods that require no configuration to get running:
 
  • preHandler Executes before any requested action (In the same handler CFC)
  • pre{Action} Executes before the {action} requested ONLY
  • postHandler Executes after any requested action (In the same handler CFC)
  • post{Action} Executes after the {action} requested ONLY
  • aroundHandler Executes around any request action (In the same handler CFC)
  • around{Action} Executes around the {action} requested ONLY
 
You don't have to do anything other than define these methods and the ColdBox framework will call them for you.  They supply you with a handy method of implementing security, error handling, logging, or whatever else you can dream up to your handlers; even cross-cutting several methods at once!
 
For more info and some example code, look here: http://wiki.coldbox.org/wiki/EventHandlers.cfm#AOP_Simple_Interceptors
 
P.S. {Action} would be the name of the action being run.  For instance, if your handler had a method (action) called "list", the convention would be "preList", "postList", or "aroundList".

Add Your Comment

Recent Entries

BoxLang 1.17 Series Part 4 : WriteDump Enhanced!

BoxLang 1.17 Series Part 4 : WriteDump Enhanced!

You call writeDump() on an ORM entity or a very rich class graph . The browser locks up. Thirty seconds later you get a page with forty thousand rows on it, you scroll for a while, you give up, and you go edit your code to dump a sub-key instead. Or worse, you crash the server.

Luis Majano
Luis Majano
September 11, 2026
BoxLang AI 3.4 Blog Series Part 4 : Locking Down Prompt Injection

BoxLang AI 3.4 Blog Series Part 4 : Locking Down Prompt Injection

LLM applications face a class of attack traditional input validation was never built for: prompt injection. An attacker embeds instructions in user input, a retrieved document, a web page your tool fetched, or an MCP result, trying to override your system prompt, exfiltrate data, or hijack a tool call. BoxLang AI 3.4.0 ships four layered, configurable defenses against exactly this, plus one more that's on unconditionally.

Luis Majano
Luis Majano
September 11, 2026