LavaMoat / LavaDomeLinks
Secure DOM trees isolation and encapsulation leveraging ShadowDOM
☆36Updated 11 months ago
Alternatives and similar repositories for LavaDome
Users that are interested in LavaDome are comparing it to the libraries listed below
Sorting:
- TC39 proposal for mitigating prototype pollution☆52Updated 2 years ago
- 🌍 Normalized repository URLs for every package in the npm registry. Updated daily.☆96Updated this week
- 🔤 A list of all the public package names on npm. Updated daily.☆287Updated this week
- Concurrent prettier runner☆263Updated last year
- DOM Clobbering Wiki, Browser Testing, and Payload Generation☆60Updated last month
- Use Snow to finally secure your web app's same origin realms!☆115Updated 9 months ago
- JavaScript & Node.js open-source SAST scanner. A static analyser for detecting most common malicious patterns 🔬.☆266Updated this week
- Custom ESLint rule to disallows unsafe innerHTML, outerHTML, insertAdjacentHTML and alike☆239Updated 4 months ago
- The trustworthy ReDoS checker☆290Updated this week
- Beyond XSS: Explore the Web Front-end Security Universe. A series about front-end security☆170Updated 2 months ago
- List of Trusted Types bypasses☆102Updated last year
- ☆46Updated 5 months ago
- Find XS-Leaks in the browser by diffing DOM-Graphs in two states☆17Updated last year
- rewrite constructor arguments, call DOMPurify, profit☆71Updated last year
- ☆141Updated last week
- ☆123Updated 2 years ago
- ☆260Updated last month
- A CLI and library which tests helps score how vulnerable a regex pattern is to ReDoS attacks. Supported in the browser, Node and Deno.☆52Updated this week
- A proposal to partition :visited link history by top-level site and frame origin.☆59Updated 7 months ago
- XS-Leaks Wiki☆175Updated 7 months ago
- Explainer for the PEPC feature☆56Updated last week
- A curated list of awesome browser security learning material.☆146Updated 3 years ago
- Companion labs to "An Exploration of JSON Interoperability Vulnerabilities"☆211Updated 2 years ago
- A collection of client-side libraries with HTML injection vulnerabilities and DOM clobbering gadgets.☆45Updated 4 months ago
- Collection of security best practices for package managers.☆164Updated 3 years ago
- Mitigate security concerns of Dependency Confusion supply chain security risks☆51Updated 6 months ago
- Prototype Pollution in JavaScript☆75Updated 3 years ago
- Proposal to migrate cleanup some to its own proposal repository☆18Updated 3 years ago
- Generate strings that match a Regular Expression pattern☆33Updated last month
- Idiosyncracies of the HTML parser☆41Updated last year