WICG / csp-next
A Modest Content Security Proposal
☆40Updated 3 years ago
Alternatives and similar repositories for csp-next:
Users that are interested in csp-next are comparing it to the libraries listed below
- This is both a terrible and wonderful idea.☆11Updated 5 years ago
- Secure Contexts, but with _more_ secureness!☆20Updated last year
- `document.domain` intentionally weakens the only security boundary we have. Perhaps we can dump it?☆17Updated last year
- Cookies should take scheme into account, just like every other storage mechanism on the web.☆16Updated 5 years ago
- Opaque Response Blocking (CORB++)☆35Updated 2 years ago
- Fetch Metadata☆74Updated last month
- WebAppSec Content Security Policy☆218Updated last week
- What if developers could opt-into better default behaviors en masse, forcing them to pick and choose the legacy risks they want to enable…☆19Updated 2 years ago
- [On hold for now] A mechanism for origins to set their origin-wide configuration in a central location☆34Updated 3 years ago
- ☆21Updated 3 years ago
- Discussion area for security aspects of ECMAScript☆64Updated 7 years ago
- Post-Spectre Web Development☆18Updated last year
- ☆12Updated 3 years ago
- What is browser fingerprinting and how should specification authors address it.☆65Updated last month
- Custom ESLint rule to disallows unsafe innerHTML, outerHTML, insertAdjacentHTML and alike☆236Updated 5 months ago
- Minutes of all TAG Meetings and Calls☆59Updated this week
- Network Error Logging☆83Updated this week
- ☆75Updated 4 months ago
- User Interface Security and the Visibility API☆11Updated 4 years ago
- A proposal to standardize security semantics of cross-site cookies☆17Updated last year
- An H2 client☆18Updated 4 months ago
- Explainer for Schemeful Same-Site☆15Updated 4 years ago
- ☆46Updated 8 months ago
- Security contract types☆60Updated 2 years ago
- Reporting API☆79Updated 2 months ago
- Agenda and minutes of meetings of the Privacy Community Group☆98Updated last month
- Working area for the 2019 HTTP Workshop☆25Updated 4 years ago
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 3 years ago
- This is a tiny Chrome Extension that protects your from Clipboard XSS Attacks☆19Updated 10 years ago
- Specification for the Client Hints infrastructure - privacy preserving proactive content negotiation☆63Updated 10 months ago