shapesecurity / salvationLinks
Parse Content Security Policy headers, warn about policy errors, safely manipulate, render, and optimise policies
☆72Updated 10 months ago
Alternatives and similar repositories for salvation
Users that are interested in salvation are comparing it to the libraries listed below
Sorting:
- umbrella config to achieve scanjs-like functionality through eslint☆88Updated 4 years ago
- rules for scanjs functionality☆28Updated 4 years ago
- WebAppSec Subresource Integrity☆74Updated last week
- [DEPRECATED] Static analysis tool for javascript code.☆427Updated 3 years ago
- WebAppSec Content Security Policy☆219Updated last week
- WebAppSec Referrer Policy☆26Updated last month
- Handlebars Context Pre-compiler☆45Updated 6 years ago
- A quick and easy way to test CSP behavior on modern browsers☆49Updated 6 years ago
- Security contract types☆60Updated 2 years ago
- Content-Security-Policy report aggregator/analyzer☆54Updated 5 years ago
- Web security drafts☆31Updated 6 years ago
- Network Error Logging☆84Updated 2 months ago
- Discussion area for security aspects of ECMAScript☆64Updated 7 years ago
- jPurify☆64Updated 8 years ago
- Suborigins☆25Updated 4 years ago
- WikiMo documentation (mainly the security space, but everyone's welcome to use this)☆66Updated last year
- My Internet-Drafts☆100Updated this week
- JavaScript parser and sandbox☆78Updated 8 years ago
- Fetch Metadata☆75Updated 3 months ago
- Test cases and harnesses for URL testing☆30Updated 8 years ago
- Server Timing☆75Updated 4 months ago
- Obsolete☆15Updated 4 years ago
- Checks filenames to be committed against a library of filename rules to prevent sensitive files in Git☆66Updated last week
- `document.domain` intentionally weakens the only security boundary we have. Perhaps we can dump it?☆17Updated last year
- What is browser fingerprinting and how should specification authors address it.☆66Updated last week
- Resource Hints☆81Updated 2 years ago
- Detects CDN usage from HTTP hostname and response headers (NodeJS/browser)☆15Updated 7 years ago
- The OSS Attribution Builder is a website that helps teams create attribution documents (notices, "open source screens", credits, etc) com…☆81Updated 4 years ago
- Custom ESLint rule to disallows unsafe innerHTML, outerHTML, insertAdjacentHTML and alike☆238Updated 2 months ago
- A guide for spec authors on how to use Promises in prose and WebIDL.☆195Updated last month