全部标签
目录标签

#xss

公开记录中带有此标签的全部仓库——标签来自其 GitHub 主题或软件包注册表发布的关键词。健康度量遵循与记录其余部分相同的版本化方法论。

25 条记录
标签为“xss”按健康指数排序
npm
97卓越健康指数
cure53/DOMPurify
DOMPurify - a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMPurify works with a secure default, but offers a lot of configurability and hooks. Demo:
JavaScript · TypeScript★ 17.3K↓ 226M/月2026年8月4日
Apache-2.02026年8月4日 · 指标 2.10.0
npm
88优秀健康指数
asamassekou10/ship-safe
CLI security scanner built for the agentic era. Detects CI/CD misconfigs, agent permission risks, MCP tool injection, hardcoded secrets, and DMCA-flagged AI dependencies.
JavaScript★ 830↓ 5,893/月2026年9月6日
MIT2026年9月6日 · 指标 2.10.0
Packagist
87优秀健康指数
nette/latte
☕ Latte: the safest & truly intuitive templates for PHP. Engine for those who want the most secure PHP sites.
PHP★ 1,291↓ 169.1K/月2026年9月5日
自定义许可证2026年9月5日 · 指标 2.10.0
npm
86优秀健康指数
humanspeak/svelte-markdown
📝 Markdown and HTML renderer for Svelte 5 — built for streaming AI agent output from Claude Code, ChatGPT, and agentic workflows. XSS-safe defaults, token caching, TypeScript types.
TypeScript · Svelte★ 123↓ 83.4K/月2026年7月17日
MIT2026年7月17日 · 指标 2.10.0
npm
86优秀健康指数
kkomelin/isomorphic-dompurify
Use DOMPurify on server and client in the same way
TypeScript★ 595↓ 23.1M/月2026年8月27日
MIT2026年8月27日 · 指标 2.10.0
crates.io
81优秀健康指数
rust-ammonia/ammonia
Repair and secure untrusted HTML
Rust★ 668↓ 788.2K/月2026年7月22日
Apache-2.02026年7月22日 · 指标 2.10.0
Packagist
78良好健康指数
voku/anti-xss
㊙️ AntiXSS | Protection against Cross-site scripting (XSS) via PHP
PHP★ 713↓ 304.2K/月2026年7月30日
MIT2026年7月30日 · 指标 2.10.0
crates.io
71良好健康指数
cloudflare/svg-hush
Make it safe to serve untrusted SVG files
Rust★ 425↓ 24.9K/月2026年8月9日
MIT2026年8月9日 · 指标 2.10.0
crates.io
71良好健康指数
kerberosmansour/SunLitSecurityLibraries
SunLit Security Libraries: Rust security crates for OWASP-aligned services
Rust★ 1↓ 27.9K/月2026年7月30日
自定义许可证2026年7月30日 · 指标 2.10.0
69良好健康指数
mganss/HtmlSanitizer
Cleans HTML to avoid XSS attacks
C#★ 1,7012026年7月18日
MIT2026年7月18日 · 指标 2.10.0
Packagist
69良好健康指数
paragonie/csp-builder
Build Content-Security-Policy headers from a JSON file (or build them programmatically)
PHP★ 540↓ 69.2K/月2026年8月18日
MIT2026年8月18日 · 指标 2.10.0
Packagist
62中等健康指数
interactivetools-com/SmartString
PHP strings that HTML-encode themselves on echo, interpolation, and concatenation. XSS-safe by default and at least 3x faster than calling htmlspecialchars() yourself.
PHP★ 0↓ 24.7K/月2026年9月5日
MIT2026年9月5日 · 指标 2.10.0
Packagist
62中等健康指数
interactivetools-com/ZenDB
PHP/MySQL database layer where values only enter SQL through placeholders and every result HTML-encodes itself on output. Faster than prepared statements plus htmlspecialchars() on every measured page, within microseconds of raw SQL.
PHP★ 3↓ 3,388/月2026年8月12日
MIT2026年8月12日 · 指标 2.10.0
Packagist
60中等健康指数
TYPO3/html-sanitizer
HTML sanitizer, written in PHP, aiming to provide XSS-safe markup based on explicitly allowed tags, attributes and values.
PHP★ 29↓ 328.4K/月2026年7月22日
MIT2026年7月22日 · 指标 2.10.0
npm
59中等健康指数
leizongmin/js-xss
Sanitize untrusted HTML (to prevent XSS) with a configuration specified by a Whitelist
HTML · JavaScript★ 5,315↓ 22.1M/月2026年8月12日
自定义许可证2026年8月12日 · 指标 2.10.0
npm
51中等健康指数
3516634930/Payloader
渗透测试Payload速查平台 | Pentest Payload Quick Reference | XSS/SQLi/SSRF/RCE | React+TypeScript
TypeScript · JavaScript★ 4632026年7月19日
AGPL-3.02026年7月19日 · 指标 2.10.0
npm
51中等健康指数
NaturalIntelligence/is-unsafe
Zero-dependency, DOM-free, pure predicate for detecting unsafe strings across HTML, XML, SVG, SQL, SHELL, NOSQL, and REGEX contexts
JavaScript★ 1↓ 66.7M/月2026年8月27日
MIT2026年8月27日 · 指标 2.10.0
npm
50中等健康指数
yuda-lyu/wsemi
A support package for web developer.
JavaScript★ 3↓ 41.2K/月2026年7月19日
MIT2026年7月19日 · 指标 2.10.0
Packagist
48薄弱健康指数
interactivetools-com/SmartArray
Enhanced Arrays with Chainable Methods and Automatic HTML Encoding
PHP★ 0↓ 4,903/月2026年7月16日
MIT2026年7月16日 · 指标 2.10.0
NuGet
47薄弱健康指数
Vereyon/HtmlRuleSanitizer
A rule based HTML sanitizer built on top of the HTML Agility pack
C#★ 692026年8月2日
MIT2026年8月2日 · 指标 2.10.0
Go
39薄弱健康指数
taq25/templ-lint
Security linter for a-h/templ: detects XSS-prone htmx / Alpine.js usage by parsing .templ files directly with parser/v2
Go★ 02026年7月17日
MIT2026年7月17日 · 指标 2.10.0
Go
34存在风险健康指数
microcosm-cc/bluemonday
bluemonday: a fast golang HTML sanitizer (inspired by the OWASP Java HTML Sanitizer) to scrub user generated content of XSS
Go★ 3,7042026年7月30日
BSD-3-Clause2026年7月30日 · 指标 2.10.0
PyPI
33存在风险健康指数
wntrblm/flask-talisman
HTTP security headers for Flask
Python★ 87↓ 2.5M/月2026年8月27日
Apache-2.02026年8月27日 · 指标 2.10.0