An open API service for software projects hosted on Open Collective.

github.com/flavorjones/loofah

Ruby library for HTML/XML transformation and sanitization
https://github.com/flavorjones/loofah

Update rubocop requirement from ~> 0.89 to ~> 1.1

dependabot-preview[bot] opened this pull request over 4 years ago
Update rubocop requirement from ~> 0.89 to ~> 1.0

dependabot-preview[bot] opened this pull request almost 5 years ago
dev: rename default git branch

flavorjones opened this issue almost 5 years ago
Block MathML mutation XSS

DanielHeath opened this issue almost 5 years ago
fixed #191: scrub_css drops !important rule from shorthand css properties

b7kich opened this pull request almost 5 years ago
scrub_css drops !important rule from shorthand css properties

b7kich opened this issue almost 5 years ago
add page-break to safelist

ahorek opened this pull request about 5 years ago
Patch notes for 2.5 / 2.6?

jmjohnson opened this issue about 5 years ago
Add border-style keywords

tarcisiozf opened this pull request about 5 years ago
Robocop code style changes

Antronin opened this pull request about 5 years ago
Fix changelog link in gemspec

rafbm opened this pull request over 5 years ago
Fix CHANGELOG url in gemspec

HusseinMorsy opened this pull request over 5 years ago
Allow specific comments

danema opened this issue over 5 years ago
Risks of whitelisting `background-image` SafeList::ALLOWED_CSS_PROPERTIES

puneet-sutar opened this issue over 5 years ago
Allow rewriting constants

IhorPohasii opened this pull request over 5 years ago
Cannot call `append_attribute` in custom scrubber

unikitty37 opened this issue over 5 years ago
Allow HTML property: contenteditable

andreynering opened this pull request about 6 years ago
Correct the regexp for kewordish css property which hold hex values

asok opened this pull request over 6 years ago
Use safelist(s), allowlist(s) where applicable

JuanitoFatas opened this pull request over 6 years ago
Use safelist(s), allowlist(s) where applicable

JuanitoFatas opened this pull request over 6 years ago
explore using DOMPurify's allowlists

flavorjones opened this issue over 6 years ago
Disable escaping of `href` attribute

th0r opened this issue almost 7 years ago
added-list-style-type-attribute-to-acceptable-css-properties-includin…

oluwayetty opened this pull request over 7 years ago
Strangely stripping inline style font-family with a dash in it

bbugh opened this issue almost 8 years ago
Scrubber removes crucial SVG 1.1 elements

stanhu opened this issue over 9 years ago
Preserving special characters

lessless opened this issue over 9 years ago
jruby test failures

flavorjones opened this issue about 10 years ago
[feature] allow `notes://` and `file://` protocols

epinault opened this issue over 10 years ago
Scrub not fully applied on HTML::Document

chengguangnan opened this issue over 10 years ago
allow custom scrubbers to leverage the HTML5lib scrubbing already written

flavorjones opened this issue over 15 years ago
feature: allow Loofah-ization of an existing Nokogiri document or fragment

flavorjones opened this issue over 15 years ago