SafeLine is a self-hosted WAF(Web Application Firewall) / reverse proxy to protect your web apps from attacks and exploits.
-
Updated
Aug 26, 2026 - Go
SafeLine is a self-hosted WAF(Web Application Firewall) / reverse proxy to protect your web apps from attacks and exploits.
DOMPurify - a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMPurify works with a secure default, but offers a lot of configurability and hooks. Demo:
Most advanced XSS scanner.
Source code for Hacker101.com - a free online web and mobile security class.
A list of resources for those interested in getting started in bug bounties
一款长亭自研的完善的安全评估工具,支持常见 web 安全问题扫描和自定义 poc | 使用之前务必先阅读文档
🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.
Awesome XSS stuff
Web Application Security Scanner Framework
Git All the Payloads! A collection of web attack payloads.
A collection of tiny XSS Payloads that can be used in different contexts. https://tinyxss.terjanq.me
ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.
XSS'OR - Hack with JavaScript.
A container repository for my public web hacks!
To associate your repository with the xss topic, visit your repo's landing page and select "manage topics."