mikewest / strict-csp-for-everyoneLinks
This is both a terrible and wonderful idea.
☆12Updated 6 years ago
Alternatives and similar repositories for strict-csp-for-everyone
Users that are interested in strict-csp-for-everyone are comparing it to the libraries listed below
Sorting:
- Fetch Metadata☆75Updated 9 months ago
- Cookies should take scheme into account, just like every other storage mechanism on the web.☆16Updated 5 years ago
- Signature-based Resource Loading Restrictions☆44Updated 5 months ago
- WebAppSec Content Security Policy☆221Updated 2 months ago
- Security contract types☆60Updated 3 years ago
- `document.domain` intentionally weakens the only security boundary we have. Perhaps we can dump it?☆17Updated 2 years ago
- The Paper Artifact Availability☆21Updated 3 years ago
- Compares the TLS configuration of a web server to the Mozilla TLS Profiles☆26Updated 2 years ago
- PrOfESSOS is our open source implementation for fully automated Evaluation-as-a-Service for SSO. PrOfESSOS introduces a generic approach …☆29Updated 3 years ago
- Explainer for Schemeful Same-Site☆15Updated 5 years ago
- Parse Content Security Policy headers, warn about policy errors, safely manipulate, render, and optimise policies☆72Updated 2 months ago
- PCC's aim is to provide a high performing offline tool to easily assess which users are vulnerable to Password Reuse Attacks (a.k.a. Pass…☆18Updated 6 years ago
- ☆16Updated 5 years ago
- A tool to run a command when the target of a symlink changes☆16Updated 9 years ago
- TLS CBC Padding Oracle Checker☆52Updated 3 years ago
- Certificate Revocation List monitor☆47Updated last year
- Test suite which checks compliance with CAA checking as defined in version 1.4.8 of the CABF Baseline Requirements☆10Updated last year
- Joint task force of Web Authentication WG and Web Payments WG☆15Updated 2 years ago
- DEPRECATED - web security checklist for Firefox Services☆78Updated 5 years ago
- ☆46Updated 4 years ago
- Go wrapper for awslabs/certlint☆25Updated 5 years ago
- Jaqen - Simple DNS rebinding☆75Updated 7 years ago
- A standard allowing organizations to nominate security contact points and policies via DNS TXT records.☆33Updated 7 months ago
- Tool to automate takeover of DigitalOcean Kubernetes cluster. Check out the blog post for more info.☆17Updated 7 years ago
- Post-Spectre Web Development☆18Updated 2 years ago
- Web security drafts☆32Updated 6 years ago
- Opaque Response Blocking (CORB++)☆36Updated 3 years ago
- CVE database☆21Updated 5 years ago
- Guidelines, principles published on https://infosec.mozilla.org☆100Updated 6 months ago
- DEPRECATED - TLS regression scanner for Firefox☆19Updated 3 years ago