Skip to main content

trusted-types-adoption

Adopt browser Trusted Types for DOM XSS mitigation: require-trusted-types-for, trusted-types, createPolicy, default policy risks, sink migration (innerHTML, outerHTML, insertAdjacentHTML, document.write, script src/text, eval), report-only rollout, browser support. Use when enabling Trusted Types on owned or authorized web apps, fixing TypeError on DOM sink assignment, reviewing createPolicy or default policies, or pairing CSP with DOM XSS defenses — hand pure XSS to xss-cross-site-scripting and CSP bypass to content-security-policy-bypass.

Jump to install

Source facts

Repository
tomysh1337/openstarry-code
Last source activity
August 17, 2026 at 13:35
Detected SKILL.md language
English
Stars
3
Forks
0

Install options

The review-first prompt is selected by default. You can switch to a direct command or download a local copy.

Review the source files

Read SKILL.md and any companion files shown by SkillsMP before deciding whether to install.