Feed Sign in with OpenID OpenID

Simon Willison’s Weblog

Secure mashups with dojox.secure (via) dojox.secure is brilliant and terrifying at the same time. It provides a full featured API for running untrusted JavaScript in a sandbox, by parsing and validating that code against a variant of Douglas Crockford’s ADsafe JavaScript subset. It could be fantastically useful, but it’s difficult to judge how secure this approach really is.

Tagged , , , , , , , ,

1 comment

  1. now everyone needs one more library to protect their open proxies from abuse

    arty - 24th September 2008 19:24 - #

Comments are closed.
A django site