Search results

867 packages found

DOMPurify is a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. It's written in JavaScript and works in all modern browsers (Safari, Opera (15+), Internet Explorer (10+), Firefox and Chrome - as well as almost anything else usin

published version 3.2.6, 15 days ago2837 dependents licensed under $(MPL-2.0 OR Apache-2.0)
41,046,572

Escape a string for use in HTML or the inverse

published version 4.0.0, 4 years ago540 dependents licensed under $MIT
31,151,139

Sanitize untrusted HTML (to prevent XSS) with a configuration specified by a Whitelist

published version 1.0.15, a year ago1221 dependents licensed under $MIT
12,402,846

Sanitize untrusted CSS with a configuration specified by a Whitelist. 根据白名单过滤CSS

published version 0.0.11, 10 months ago34 dependents licensed under $MIT
12,056,387

Makes it possible to use DOMPurify on server and client in the same way.

published version 2.25.0, 14 days ago282 dependents licensed under $MIT
4,293,004

hast utility to sanitize nodes

published version 5.0.2, 7 months ago93 dependents licensed under $MIT
3,339,889

Express middleware for the validator module.

published version 7.2.1, 5 months ago11930 dependents licensed under $MIT
3,318,047

Content Security Policy middleware

published version 4.0.0, a year ago51 dependents licensed under $MIT
1,850,375

rehype plugin to sanitize HTML

published version 6.0.0, 2 years ago278 dependents licensed under $MIT
1,902,025

Secure XSS Filters - Just sufficient output filtering to prevent XSS!

published version 1.2.7, 9 years ago101 dependents
382,041

Safe replacement for the v-html directive

published version 5.3.0, a month ago42 dependents licensed under $MIT
315,168

🛡️ Security Module for Nuxt based on HTTP Headers and Middleware

published version 2.2.0, 3 months ago9 dependents licensed under $MIT
282,406

Jam3 eslint plugin for react

published version 0.2.3, 5 years ago12 dependents licensed under $MIT
192,997

Express 4.x and 5.x middleware which sanitizes user input data (in req.body, req.query, req.headers and req.params) to prevent Cross Site Scripting (XSS) attack.

published version 2.0.0, 5 months ago7 dependents licensed under $MIT
121,971

OSWASP ESAPI4JS encoders port to node module

published version 0.0.1, 11 years ago10 dependents
71,260

XSS filter extension for showdown

published version 0.2.0, 10 years ago5 dependents licensed under $MIT
68,131

A helper for safely embedding URLs in style properties

published version 1.0.0, 3 years ago2 dependents licensed under $MIT
58,801

a small script to remove script tags from SVGs

published version 0.4.1, a month ago0 dependents licensed under $MIT
36,503

Escape string for use in html

published version 2.0.0, 9 years ago48 dependents licensed under $Public Domain
31,026

Express middleware for the sanitizer module.

published version 1.0.6, 4 years ago26 dependents licensed under $MIT
24,033