A browser API to prevent DOM-Based Cross Site Scripting in modern web applications.
-
Updated
Oct 7, 2026 - JavaScript
A browser API to prevent DOM-Based Cross Site Scripting in modern web applications.
Injects a trusted types policy into an HTML page to log all DOM sinks whenever HTML is written into the DOM.
A Symfony bundle providing web security features in the form of COOP, COEP, Fetch Metadata and Trusted types
Beautiful, accessible charts in five lines. Zero dependencies. The browser is the chart engine.
Chrome DevTools extension for accelerating Trusted Types adoption with real-time CSP violation monitoring, sink analysis, policy generation, and developer-focused DOM XSS remediation workflows.
Universal Markdown Exporter userscript with full development artifacts, examples, captures, and Greasy Fork history.
Safe rendering of agent-generated Markdown/HTML: a policy engine for image hosts, URLs, streaming and Trusted Types, with Angular, React and A2UI adapters, plus mcp-app-lint for MCP Apps CSP.
A test suite to find what APIs are covered by Trusted Types
Small example with few endpoints used to test AdGuard AdBlocker compatibility with trusted types headers.
Typed validated values, explicit trust transitions, exhaustive confidence levels, and per-value TTL freshness for C#.
Typed validated values, explicit trust transitions, exhaustive confidence levels, and per-value TTL freshness for Swift.
Typed validated values, explicit trust transitions, exhaustive confidence levels, and per-value TTL freshness for OCaml.
Demo website showcasing Trusted Types for CSP
Typed validated values, explicit trust transitions, exhaustive confidence levels, and per-value TTL freshness for Rust.
Typed validated values, explicit trust transitions, exhaustive confidence levels, and per-value TTL freshness for Scala 3.
Typed validated values, explicit trust transitions, exhaustive confidence levels, and per-value TTL freshness for F#.
Typed validated values, explicit trust transitions, exhaustive confidence levels, and per-value TTL freshness for Kotlin.
Embeddable visual editor for the web — CSP / Trusted Types compatible, zero-dependency core
Typed validated values, explicit trust transitions, exhaustive confidence levels, and per-value TTL freshness for Haskell.
To associate your repository with the trusted-types topic, visit your repo's landing page and select "manage topics."