w3c / trusted-typesLinks
A browser API to prevent DOM-Based Cross Site Scripting in modern web applications.
☆642Updated 2 months ago
Alternatives and similar repositories for trusted-types
Users that are interested in trusted-types are comparing it to the libraries listed below
Sorting:
- WebAppSec Content Security Policy☆221Updated 2 months ago
- Web Application Security Working Group repo☆654Updated 2 months ago
- Custom ESLint rule to disallows unsafe innerHTML, outerHTML, insertAdjacentHTML and alike☆239Updated 4 months ago
- ☆377Updated 10 months ago
- Fetch Metadata☆75Updated 9 months ago
- ☆260Updated last month
- A mechanism to selectively enable and disable browser features and APIs☆416Updated 3 months ago
- W3C specs and API reviews☆359Updated 2 months ago
- Web packaging format☆1,249Updated last month
- Incrementally better HTTP state management.☆301Updated 3 years ago
- Detect vulnerable regexes in your project. REDOS, catastrophic backtracking.☆340Updated 4 years ago
- Discussion area for security aspects of ECMAScript☆64Updated 8 years ago
- Node.js Ecosystem Security Working Group☆533Updated this week
- URL Standard☆597Updated this week
- Some thoughts on how Node.js might respond to a changing security environment☆173Updated 6 years ago
- A Modest Content Security Proposal☆40Updated 4 years ago
- Asynchronous access to cookies from JavaScript☆162Updated last week
- Lifecycle API to support system initiated discarding and freezing☆156Updated 2 years ago
- The HTTP Archive website hosted on App Engine☆354Updated 3 weeks ago
- Content released at NorthSec 2018 for my talk on prototype pollution☆532Updated last year
- A proposal for a Layout Instability specification☆165Updated last month
- ☆706Updated this week
- TSLint security rules☆69Updated 5 years ago
- Draft proposal for SES (Secure EcmaScript)☆238Updated 4 years ago
- W3C Web Performance Working Group repo☆432Updated last month
- WebIDL parser☆270Updated 2 weeks ago
- `document.domain` intentionally weakens the only security boundary we have. Perhaps we can dump it?☆17Updated 2 years ago
- A repository for the Display Locking spec☆299Updated 3 years ago
- Proposal for a programmable JS profiling API for collecting JS profiles from real end-user environments☆203Updated this week
- Documentation of how TC39 operates and how to participate☆216Updated last month