Skip to main content

jupyterlab-xssguard

Github Actions Status

A JupyterLab extension that mitigates XSS attacks by sandboxing the HTML output element of code cells.

The extension works by embedding the HTML output of code cells inside a sandboxed iframe, that disallows access to its parent document.

In case of an XSS attack such as CVE-2024-27132, the JavaScript payload will not be able to escape the plugin's sandbox to run arbitrary Python code or access sensitive DOM elements.

No XSSGuard

before

With XSSGuard

after

Requirements

  • JupyterLab >= 4.0.0

Installation

We recommend installing the extension through JupyterLab's Extension Manager -

install

For a standalone installation, execute:

pip install jupyterlab-xssguard

Metadata

Release files for jupyterlab-xssguard 1.0.1

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for jupyterlab-xssguard 1.0.1
File Size Uploaded
jupyterlab_xssguard-1.0.1.tar.gz 315.2 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for jupyterlab-xssguard 1.0.1
File Interpreter ABI Platform
jupyterlab_xssguard-1.0.1-py3-none-any.whl Python 3 none any Details

Total release size: 337.2 kB

Release files / jupyterlab_xssguard-1.0.1.tar.gz

Download URL jupyterlab_xssguard-1.0.1.tar.gz
Size 315.2 kB
Tags Source
SHA-256 checksum
How to use checksums
a06fcb715401f96170bc41992791a3d22f1b792721184402ea92986cc8ddcfb9
BLAKE2b-256 checksum
How to use checksums
7b22bd9c096835eaf28f51e8b3ee5c10afd52d57b351cbc6199bc3b8c5a37a30
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/5.1.1 CPython/3.12.4

Release files / jupyterlab_xssguard-1.0.1-py3-none-any.whl

Download URL jupyterlab_xssguard-1.0.1-py3-none-any.whl
Size 22.0 kB
Tags Python 3
SHA-256 checksum
How to use checksums
cb25ae4b2a3a3376dbf42229a01b136a59eddfa7e87036ceb39d2d4b2ce320e8
BLAKE2b-256 checksum
How to use checksums
39060278d8aed6e7aeffb572832b9ab02f800489375645310984ffa4c39f6e90
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/5.1.1 CPython/3.12.4

Release history Release notifications | RSS feed

This release

1.0.1 This release

2 release files

1.0.0

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page