summaryrefslogtreecommitdiff
BranchCommit messageAuthorAge
mainfix copyright yearFreya Murphy7 months
 
 
AgeCommit messageAuthorFilesLines
2025-02-07fix copyright yearHEADmainFreya Murphy2-2/+2
2024-12-25make shim a container once againFreya Murphy5-11/+51
2024-12-25update versionFreya Murphy1-1/+1
2024-12-25fix auth modelFreya Murphy1-1/+1
2024-12-23remove 'rem', make styles more scalableFreya Murphy10-48/+65
2024-12-23persistent sessionsFreya Murphy1-0/+6
2024-12-23update xssbook to work with crimson updatesFreya Murphy6-55/+96
2024-12-23v2.1.0, refactor w/ crimsonFreya Murphy124-2476/+1850
[...]
 
Clone
https://g.freya.cat/xssbook2
git@git.in.freya.cat:xssbook2

xssbook

description

who doesn't want to run non free javascript

now with xssbook you can run as much stallman disapprovement as you want - all inputs on the site are unfiltered - api calls dont care what you send them as long as they are valid strings - upload anyfiles to be your profile avatar and banner (even adobe flash!!!)

installation

To get the checkout run:

git clone https://g.freya.cat/freya/xssbook2 xssbook2
cd xssbook2
git submodule update --init

XSSBook v2 runs in docker compose. Do ALL of the following:

  • MUST Copy example.env to .env
  • MUST update the following settings in .env
  • API_SECRET - Your own private JWT secret
  • XSSBOOK_* - Domain info for XSSBook is being hosted
  • MAY want to update the following settings in .env
  • HTTP_BIND - The addresses XSSBook will listen on
  • HTTP_PORT - The port XSSBook will listen on
  • ENVIRONMENT - If you want to test XSSBook in [development] mode
  • MUST build the following assets by running make
  • CSS files. MUST have sassc installed
  • MUST use site/bin/compose instead of docker compose

Once XSSBook is configured properly. Run the following to build the container images and start up the compose stack for XSSBook.

./site/bin/compose build --pull
./site/bin/compose up -d

NOTE: XSSBook needs all docker volumes to be owned by uid 1000 gid 1000. If you are NOT the root user or user 1000:1000, the compose script will ask for sudo access to be able to set the volume permissions.

migrating from xssbook v1

See shim/README.md

license

This project is licensed under the GNU GPLv3.