WICG / csp-nextLinks
A Modest Content Security Proposal
☆40Updated 4 years ago
Alternatives and similar repositories for csp-next
Users that are interested in csp-next are comparing it to the libraries listed below
Sorting:
- WebAppSec Content Security Policy☆221Updated 2 months ago
- This is both a terrible and wonderful idea.☆12Updated 5 years ago
- Secure Contexts, but with _more_ secureness!☆20Updated last year
- [On hold for now] A mechanism for origins to set their origin-wide configuration in a central location☆33Updated 3 years ago
- Fetch Metadata☆75Updated 5 months ago
- Discussion area for security aspects of ECMAScript☆64Updated 7 years ago
- Cookies should take scheme into account, just like every other storage mechanism on the web.☆16Updated 5 years ago
- Opaque Response Blocking (CORB++)☆35Updated 3 years ago
- Custom ESLint rule to disallows unsafe innerHTML, outerHTML, insertAdjacentHTML and alike☆237Updated 2 weeks ago
- Test Page for HTTP/2 prioritization (server and browser)☆109Updated 5 years ago
- ☆248Updated 2 months ago
- Security contract types☆60Updated 2 years ago
- ☆12Updated 3 years ago
- ☆23Updated 3 years ago
- Parse Content Security Policy headers, warn about policy errors, safely manipulate, render, and optimise policies☆72Updated last year
- Post-Spectre Web Development☆18Updated 2 years ago
- ☆368Updated 6 months ago
- `document.domain` intentionally weakens the only security boundary we have. Perhaps we can dump it?☆17Updated last year
- Incrementally better HTTP state management.☆301Updated 3 years ago
- Web Application Security Working Group repo☆642Updated 3 weeks ago
- What if developers could opt-into better default behaviors en masse, forcing them to pick and choose the legacy risks they want to enable…☆19Updated 2 years ago
- Specification for the Client Hints infrastructure - privacy preserving proactive content negotiation☆63Updated last year
- Log all the CSP violations!☆57Updated 2 years ago
- A browser API to prevent DOM-Based Cross Site Scripting in modern web applications.☆634Updated 2 months ago
- Asynchronous access to cookies from JavaScript☆160Updated last week
- A proposal for allowing web applications to origin-key their agent clusters. Now archived, as this specification has been merged into the…☆24Updated 4 years ago
- Signature-based Resource Loading Restrictions☆41Updated last month
- rewrite constructor arguments, call DOMPurify, profit☆70Updated 11 months ago
- Network Error Logging☆89Updated 4 months ago
- Incrementally better cookies.☆22Updated 3 years ago