Skip to main content

css-injection-exfiltration

Authorized CSS injection and style-based data exfiltration awareness: map untrusted input into style contexts, assess attribute-selector and url()/@import channels, and document impact under CSP style-src without treating CSS as full script XSS. Use when user-controlled CSS, style attributes, theme/customization fields, or reflected values in selectors may leak secrets via browser style loading on owned or in-scope apps.

Zur Installation springen

Quellinformationen

Repository
tomysh1337/openstarry-code
Letzte Quellaktivität
17. August 2026 um 13:35
Erkannte Sprache von SKILL.md
Englisch
Sterne
3
Forks
0

Installationsoptionen

Standardmäßig ist der Prompt ausgewählt, der zuerst die Quelle prüft. Sie können zu einem direkten Befehl wechseln oder eine lokale Kopie herunterladen.

Quelldateien prüfen

Lesen Sie SKILL.md und alle von SkillsMP angezeigten Begleitdateien, bevor Sie sich für eine Installation entscheiden.