sast-xss
CommunityFind XSS vulnerabilities across codebases (3-phase)
Authorutkusen
Version1.0.0
Installs0
System Documentation
What problem does it solve?
Detect Cross-Site Scripting vulnerabilities across codebases by tracing user-controlled input through rendering sinks.
Core Features & Use Cases
- Three-phase XSS workflow (recon, batched verify, merge) to locate and validate vulnerabilities.
- Requires sast/architecture.md to map sinks and data flows; outputs to sast/xss-results.md.
- Useful for codebases with server-side rendering, client-side templates, and dynamic DOM updates to identify risky patterns.
Quick Start
Run the XSS detection workflow against your project to surface sink sites and generate a consolidated xss-results.md.
Dependency Matrix
Required Modules
None requiredComponents
Standard package💻 Claude Code Installation
Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.
Please help me install this Skill: Name: sast-xss Download link: https://github.com/utkusen/sast-skills/archive/main.zip#sast-xss Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
Agent Skills Search Helper
Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.