<?xml version="1.0" encoding="utf-8"?>
<feed xml:lang="en-us" xmlns="http://www.w3.org/2005/Atom"><title>Simon Willison's Weblog: dojoxsecure</title><link href="http://simonwillison.net/" rel="alternate"/><link href="http://simonwillison.net/tags/dojoxsecure.atom" rel="self"/><id>http://simonwillison.net/</id><updated>2008-09-24T16:08:56+00:00</updated><author><name>Simon Willison</name></author><entry><title>Secure mashups with dojox.secure</title><link href="https://simonwillison.net/2008/Sep/24/dojoxsecure/#atom-tag" rel="alternate"/><published>2008-09-24T16:08:56+00:00</published><updated>2008-09-24T16:08:56+00:00</updated><id>https://simonwillison.net/2008/Sep/24/dojoxsecure/#atom-tag</id><summary type="html">
    
&lt;p&gt;&lt;strong&gt;&lt;a href="http://www.sitepen.com/blog/2008/08/01/secure-mashups-with-dojoxsecure/"&gt;Secure mashups with dojox.secure&lt;/a&gt;&lt;/strong&gt;&lt;/p&gt;
dojox.secure is brilliant and terrifying at the same time. It provides a full featured API for running untrusted JavaScript in a sandbox, by parsing and validating that code against a variant of Douglas Crockford’s ADsafe JavaScript subset. It could be fantastically useful, but it’s difficult to judge how secure this approach really is.

    &lt;p&gt;&lt;small&gt;&lt;/small&gt;Via &lt;a href="http://twitter.com/dylans/statuses/933059448"&gt;dylans on Twitter&lt;/a&gt;&lt;/small&gt;&lt;/p&gt;


    &lt;p&gt;Tags: &lt;a href="https://simonwillison.net/tags/adsafe"&gt;adsafe&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/dojo"&gt;dojo&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/dojox"&gt;dojox&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/dojoxsecure"&gt;dojoxsecure&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/javascript"&gt;javascript&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/kriszyp"&gt;kriszyp&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/mashups"&gt;mashups&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/sandboxing"&gt;sandboxing&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/security"&gt;security&lt;/a&gt;&lt;/p&gt;



</summary><category term="adsafe"/><category term="dojo"/><category term="dojox"/><category term="dojoxsecure"/><category term="javascript"/><category term="kriszyp"/><category term="mashups"/><category term="sandboxing"/><category term="security"/></entry></feed>