Frontend Dom Xss Csp Review

Review frontend source for DOM XSS sinks (innerHTML, dangerouslySetInnerHTML, v-html, document.write, eval-class APIs), verify actual attacker-reachable taint flow, and audit Content-Security-Policy and Trusted Types enforcement for real bypasses rather than header-presence checks, with framework-specific sink guidance loaded progressively.

VincentChuWaiChow Updated

File contents

VincentChuWaiChow/vanguard-frontier-agentic/tree/main/skills/frontend/frontend-dom-xss-csp-review commit 0f6a6a5925

Frequently asked questions

npx skillmds@latest add vincentchuwaichow/frontend-dom-xss-csp-review