Secure MongoDB Data Retrieval API with Validation & HTTP Responses
Creates a secure public HTTP GET endpoint to fetch MongoDB collection data with strict input validation, error handling, and formatted JSON responses.
This n8n workflow provides a robust, secure API endpoint for retrieving all documents from any specified MongoDB collection via a simple HTTP GET request. It starts with a webhook trigger that captures the collection name from the URL path (e.g., /webhook/:collectionName). Input is rigorously validated using a regex pattern (^(!system.)[a-zA-Z0-9._]{1,120}$) to block system collections, prevent injection attacks, and enforce length limits, ensuring only safe alphanumeric, underscore, and dot characters are allowed.
A conditional node checks validation results: invalid inputs trigger immediate 4xx error responses with clear messages, halting execution to protect the database. Valid requests proceed to query the MongoDB collection, fetching all documents. Responses are standardized by converting MongoDB's _id fields to 'id', wrapping data in a consistent JSON envelope, and returning 2xx success codes. Comprehensive error handling covers connection issues and empty results.
Benefits include enhanced security for exposing database reads publicly without custom backend code, rapid API deployment, and compliance with best practices like input sanitization. Ideal use cases: internal dashboards pulling order/inventory data, third-party app integrations for customer records, or prototyping read-only APIs for e-commerce, analytics, or CMS systems. Saves hours of development time while minimizing vulnerabilities.
New buyers can create an account from the cart to unlock a controlled $10 first-purchase credit on eligible orders of $25+.
Secure checkout powered by Stripe
Support
How to import this workflow into n8n
- 1Purchase or download the workflow to get the n8n workflow JSON file.
- 2In your n8n instance, open Workflows and choose "Import from File" (or paste the JSON with Ctrl+V on the canvas).
- 3Open each node marked with a credential warning and connect your own accounts and API keys.
- 4Run the workflow once manually to verify the data flow, then toggle it to Active.
Related File & Document Management workflows
- Automate Invoice Data Extraction to Airtable with OCR and AI$14.99
- Save new Gmail attachments to Google Drive$3.99
- Automate PDF Invoice Creation from Google Sheets Using PDF.co$4.99
- Create Custom PDF Documents from Templates with Gemini & Google Drive$24.99
- Automatically Save and Organize Outlook Email Attachments in OneDrive Folders$9.99
- Automate Invoice Data Extraction from Google Drive to Google Sheets with Mistral OCR$14.99
More from Timo Salim
Need this deployed? We'll set it up for you.
Our automation experts deploy this workflow in your stack, connect your accounts, and verify it works — or build a custom solution from scratch.