jupyterlab-xssguard
A JupyterLab extension that mitigates XSS attacks by sandboxing the HTML output element of code cells.
The extension works by embedding the HTML output of code cells inside a sandboxed iframe, that disallows access to its parent document.
In case of an XSS attack such as CVE-2024-27132, the JavaScript payload will not be able to escape the plugin's sandbox to run arbitrary Python code or access sensitive DOM elements.
No XSSGuard
With XSSGuard
Requirements
- JupyterLab >= 4.0.0
Installation
We recommend installing the extension through JupyterLab's Extension Manager -
For a standalone installation, execute:
pip install jupyterlab-xssguard
Metadata
Release files for jupyterlab-xssguard 1.0.1
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| jupyterlab_xssguard-1.0.1.tar.gz | 315.2 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| jupyterlab_xssguard-1.0.1-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 337.2 kB
Release files / jupyterlab_xssguard-1.0.1.tar.gz
| Download URL | jupyterlab_xssguard-1.0.1.tar.gz |
|---|---|
| Size | 315.2 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
a06fcb715401f96170bc41992791a3d22f1b792721184402ea92986cc8ddcfb9
|
|
BLAKE2b-256 checksum How to use checksums |
7b22bd9c096835eaf28f51e8b3ee5c10afd52d57b351cbc6199bc3b8c5a37a30
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/5.1.1 CPython/3.12.4
|
Release files / jupyterlab_xssguard-1.0.1-py3-none-any.whl
| Download URL | jupyterlab_xssguard-1.0.1-py3-none-any.whl |
|---|---|
| Size | 22.0 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
cb25ae4b2a3a3376dbf42229a01b136a59eddfa7e87036ceb39d2d4b2ce320e8
|
|
BLAKE2b-256 checksum How to use checksums |
39060278d8aed6e7aeffb572832b9ab02f800489375645310984ffa4c39f6e90
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/5.1.1 CPython/3.12.4
|