mikewest / strict-csp-for-everyoneLinks
This is both a terrible and wonderful idea.
☆12Updated 6 years ago
Alternatives and similar repositories for strict-csp-for-everyone
Users that are interested in strict-csp-for-everyone are comparing it to the libraries listed below
Sorting:
- A Modest Content Security Proposal☆40Updated 4 years ago
- Cookies should take scheme into account, just like every other storage mechanism on the web.☆16Updated 5 years ago
- Fetch Metadata☆75Updated 6 months ago
- WebAppSec Content Security Policy☆221Updated 3 months ago
- Signature-based Resource Loading Restrictions☆41Updated 2 months ago
- Security contract types☆60Updated 3 years ago
- The Paper Artifact Availability☆22Updated 3 years ago
- Explainer for Schemeful Same-Site☆15Updated 5 years ago
- `document.domain` intentionally weakens the only security boundary we have. Perhaps we can dump it?☆17Updated last year
- ☆13Updated 5 years ago
- Compares the TLS configuration of a web server to the Mozilla TLS Profiles☆26Updated last year
- Internet-Draft on IP address privacy☆17Updated 6 months ago
- Specifications for Privacy Proxy Implementations☆31Updated this week
- Web security drafts☆31Updated 6 years ago
- Joint task force of Web Authentication WG and Web Payments WG☆15Updated 2 years ago
- DEPRECATED - web security checklist for Firefox Services☆76Updated 4 years ago
- Agenda/Minutes of Anti-Fraud Community Group meetings.☆19Updated last month
- Going Florida on container keyring masks. A tool to demonstrate the ineffectivity containers have on isolating Linux Kernel keyrings.☆44Updated 2 weeks ago
- Opaque Response Blocking (CORB++)☆35Updated 3 years ago
- PrOfESSOS is our open source implementation for fully automated Evaluation-as-a-Service for SSO. PrOfESSOS introduces a generic approach …☆28Updated 2 years ago
- Parse Content Security Policy headers, warn about policy errors, safely manipulate, render, and optimise policies☆72Updated last year
- ☆45Updated 3 years ago
- A standard allowing organizations to nominate security contact points and policies via DNS TXT records.☆32Updated 4 months ago
- PCC's aim is to provide a high performing offline tool to easily assess which users are vulnerable to Password Reuse Attacks (a.k.a. Pass…☆18Updated 5 years ago
- TLS CBC Padding Oracle Checker☆52Updated 3 years ago
- Execute tasks across SSH hosts using random selection☆17Updated 5 years ago
- Custom ESLint rule to disallows unsafe innerHTML, outerHTML, insertAdjacentHTML and alike☆237Updated last month
- insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.☆50Updated 3 years ago
- Go static analysis tool that checks for security issues using an AST.☆29Updated 6 years ago
- A tool to discover bygonessl vulnerabilities using the facebook API☆20Updated 6 years ago