A browser API to prevent DOM-Based Cross Site Scripting in modern web applications.
☆652Feb 24, 2026Updated last week
Alternatives and similar repositories for trusted-types
Users that are interested in trusted-types are comparing it to the libraries listed below
Sorting:
- Security contract types☆60Oct 4, 2022Updated 3 years ago
- This is both a terrible and wonderful idea.☆12Oct 2, 2019Updated 6 years ago
- ☆261Feb 4, 2026Updated 3 weeks ago
- Fetch Metadata☆75Apr 1, 2025Updated 11 months ago
- WebAppSec Subresource Integrity☆78Jul 10, 2025Updated 7 months ago
- A mechanism to selectively enable and disable browser features and APIs☆420Oct 6, 2025Updated 4 months ago
- Keyboard Lock☆22Mar 8, 2023Updated 2 years ago
- Opaque Response Blocking (CORB++)☆36Aug 24, 2022Updated 3 years ago
- ☆142Jan 9, 2026Updated last month
- Web Application Security Working Group repo☆655Feb 11, 2026Updated 2 weeks ago
- A repository for the Display Locking spec☆300Aug 10, 2022Updated 3 years ago
- WebAppSec Content Security Policy☆220Feb 11, 2026Updated 2 weeks ago
- A Modest Content Security Proposal☆41Aug 31, 2021Updated 4 years ago
- Web packaging format☆1,251Dec 5, 2025Updated 2 months ago
- WebAppSec Confinement Origin Web Labels☆11Feb 16, 2021Updated 5 years ago
- ☆41Jul 16, 2025Updated 7 months ago
- Reporting API☆83Jan 2, 2026Updated 2 months ago
- Cookies should take scheme into account, just like every other storage mechanism on the web.☆16Apr 18, 2020Updated 5 years ago
- A repository for the ServiceWorker static routing API.☆27May 21, 2025Updated 9 months ago
- A collection of browser-based side channel attack vectors.☆759Mar 19, 2024Updated last year
- DOMPurify - a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMPurify works with a secure default, but offe…☆16,674Updated this week
- ☆11May 6, 2022Updated 3 years ago
- Explainer and spec for the Content Indexing proposal☆30Apr 13, 2021Updated 4 years ago
- Lifecycle API to support system initiated discarding and freezing☆156Aug 28, 2023Updated 2 years ago
- WebAppSec Clear Site Data☆20Feb 7, 2024Updated 2 years ago
- ☆23Mar 30, 2022Updated 3 years ago
- Custom ESLint rule to disallows unsafe innerHTML, outerHTML, insertAdjacentHTML and alike☆240Updated this week
- A proposal for enabling seamless navigations between sites or pages☆954Jul 23, 2024Updated last year
- HTTPLeaks - All possible ways, a website can leak HTTP requests☆2,098Jan 3, 2026Updated 2 months ago
- Former home of import maps (now merged into HTML)☆2,726Feb 26, 2025Updated last year
- A way to create DOM and add it to the document without blocking the main thread.☆88Jun 26, 2019Updated 6 years ago
- XSS mitigation for Polymer webcomponents that uses safe html type contracts☆17May 16, 2019Updated 6 years ago
- Explainer for Schemeful Same-Site☆15Aug 6, 2020Updated 5 years ago
- Register your Kubernetes IPs to monitor.shodan.io☆18Oct 28, 2022Updated 3 years ago
- WeakRefs☆410Jan 24, 2022Updated 4 years ago
- ECMAScript Proposal, specs, and reference implementation for Realms☆1,555Feb 10, 2025Updated last year
- ☆144Jan 8, 2026Updated last month
- A web API proposal for watching for close requests (e.g. Esc, Android back button, ...)☆81Aug 19, 2025Updated 6 months ago
- 🦕A colorful assertEqual for deno☆26Mar 17, 2019Updated 6 years ago