{"adoption": {"forks": 223, "observed_at": "2026-08-28T04:05:16.050990+00:00", "stars": 1644}, "canonical_url": "https://ross.abutalabs.com/products/client-side-prototype-pollution", "card": {"archived": false, "artifact_type": "learning-resource", "description": "Prototype Pollution and useful Script Gadgets", "domain": ["security", "web-development", "penetration-testing", "tutorials"], "enriched": true, "function": ["security", "penetration-testing", "vulnerability-scanning", "developer-tools"], "health_score": 20, "homepage": null, "language": null, "license": null, "license_family": "other", "maturity": "maintenance", "member_repos": ["BlackFan/client-side-prototype-pollution"], "name": "BlackFan/client-side-prototype-pollution", "platform": ["browser", "cross-platform"], "pushed_at": "2024-01-27T12:22:39+00:00", "repo": "BlackFan/client-side-prototype-pollution", "stars": 1644, "tags": ["prototype-pollution", "xss", "script-gadgets", "client-side-security", "cve-research", "vulnerability-examples", "security-research", "web-server"], "topics": [], "urls": [], "use_cases": ["find libraries vulnerable to client-side prototype pollution", "learn how prototype pollution attacks work in the browser", "demonstrate impact of prototype pollution with script gadgets", "look up CVE payloads for query-string parsing vulnerabilities", "research client-side XSS via prototype pollution", "audit whether a frontend library is on the vulnerable list"], "what_it_is": "A curated collection of JavaScript libraries vulnerable to client-side prototype pollution via document.location parsing, along with useful script gadgets for demonstrating impact. It catalogs payloads, CVEs, and references for security researchers studying this class of web vulnerability.", "when_to_avoid": ["you need a tool that automatically scans or fixes prototype pollution", "you want a maintained library to include in production code", "you need server-side (Node.js) prototype pollution coverage specifically"], "when_to_choose": ["you are a security researcher or pentester studying prototype pollution", "you need real-world examples and payloads for a vulnerability report", "you are checking if a query-parsing library has a known pollution CVE"]}, "data_as_of": "2026-08-30T08:39:29.467469+00:00", "members": [{"path": "/products/client-side-prototype-pollution", "repo": "BlackFan/client-side-prototype-pollution", "role": "main", "score": 32}], "provenance": {"archived": {"kind": "observed", "observed_at": "2026-08-28T04:05:16.050990+00:00", "source": "github"}, "artifact_type": {"confidence": null, "enriched_at": "2026-08-30T03:45:47.540216+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "ea3ad5ac2886954beec17529945e05bc57ea6e3861a3d80fb64eb61816011be1", "fetched_at": "2026-08-28T04:05:16.050990+00:00", "kind": "readme", "missing": false, "url": "https://github.com/BlackFan/client-side-prototype-pollution"}], "taxonomy_version": 1}, "description": {"kind": "observed", "observed_at": "2026-08-28T04:05:16.050990+00:00", "source": "github"}, "domain": {"confidence": null, "enriched_at": "2026-08-30T03:45:47.540216+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "ea3ad5ac2886954beec17529945e05bc57ea6e3861a3d80fb64eb61816011be1", "fetched_at": "2026-08-28T04:05:16.050990+00:00", "kind": "readme", "missing": false, "url": "https://github.com/BlackFan/client-side-prototype-pollution"}], "taxonomy_version": 1}, "enriched": {"inputs": [], "kind": "computed", "method": "enrichment_status"}, "function": {"confidence": null, "enriched_at": "2026-08-30T03:45:47.540216+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "ea3ad5ac2886954beec17529945e05bc57ea6e3861a3d80fb64eb61816011be1", "fetched_at": "2026-08-28T04:05:16.050990+00:00", "kind": "readme", "missing": false, "url": "https://github.com/BlackFan/client-side-prototype-pollution"}], "taxonomy_version": 1}, "health_score": {"inputs": ["days_since_push", "days_since_release", "archived"], "kind": "computed", "method": "health_v1"}, "homepage": {"kind": "observed", "observed_at": "2026-08-28T04:05:16.050990+00:00", "source": "github"}, "language": {"kind": "observed", "observed_at": "2026-08-28T04:05:16.050990+00:00", "source": "github"}, "license": {"kind": "observed", "observed_at": "2026-08-28T04:05:16.050990+00:00", "source": "github"}, "license_family": {"inputs": ["license"], "kind": "computed", "method": "license_family"}, "maturity": {"confidence": null, "enriched_at": "2026-08-30T03:45:47.540216+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "ea3ad5ac2886954beec17529945e05bc57ea6e3861a3d80fb64eb61816011be1", "fetched_at": "2026-08-28T04:05:16.050990+00:00", "kind": "readme", "missing": false, "url": "https://github.com/BlackFan/client-side-prototype-pollution"}], "taxonomy_version": 1}, "member_repos": {"kind": "observed", "observed_at": "2026-08-28T04:05:16.050990+00:00", "source": "github"}, "name": {"kind": "observed", "observed_at": "2026-08-28T04:05:16.050990+00:00", "source": "github"}, "platform": {"confidence": null, "enriched_at": "2026-08-30T03:45:47.540216+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "ea3ad5ac2886954beec17529945e05bc57ea6e3861a3d80fb64eb61816011be1", "fetched_at": "2026-08-28T04:05:16.050990+00:00", "kind": "readme", "missing": false, "url": "https://github.com/BlackFan/client-side-prototype-pollution"}], "taxonomy_version": 1}, "pushed_at": {"kind": "observed", "observed_at": "2026-08-28T04:05:16.050990+00:00", "source": "github"}, "repo": {"kind": "observed", "observed_at": "2026-08-28T04:05:16.050990+00:00", "source": "github"}, "stars": {"kind": "observed", "observed_at": "2026-08-28T04:05:16.050990+00:00", "source": "github"}, "tags": {"confidence": null, "enriched_at": "2026-08-30T03:45:47.540216+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "ea3ad5ac2886954beec17529945e05bc57ea6e3861a3d80fb64eb61816011be1", "fetched_at": "2026-08-28T04:05:16.050990+00:00", "kind": "readme", "missing": false, "url": "https://github.com/BlackFan/client-side-prototype-pollution"}], "taxonomy_version": 1}, "topics": {"kind": "observed", "observed_at": "2026-08-28T04:05:16.050990+00:00", "source": "github"}, "urls": {"kind": "observed", "observed_at": "2026-08-28T04:05:16.050990+00:00", "source": "github"}, "use_cases": {"confidence": null, "enriched_at": "2026-08-30T03:45:47.540216+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "ea3ad5ac2886954beec17529945e05bc57ea6e3861a3d80fb64eb61816011be1", "fetched_at": "2026-08-28T04:05:16.050990+00:00", "kind": "readme", "missing": false, "url": "https://github.com/BlackFan/client-side-prototype-pollution"}], "taxonomy_version": 1}, "what_it_is": {"confidence": null, "enriched_at": "2026-08-30T03:45:47.540216+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "ea3ad5ac2886954beec17529945e05bc57ea6e3861a3d80fb64eb61816011be1", "fetched_at": "2026-08-28T04:05:16.050990+00:00", "kind": "readme", "missing": false, "url": "https://github.com/BlackFan/client-side-prototype-pollution"}], "taxonomy_version": 1}, "when_to_avoid": {"confidence": null, "enriched_at": "2026-08-30T03:45:47.540216+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "ea3ad5ac2886954beec17529945e05bc57ea6e3861a3d80fb64eb61816011be1", "fetched_at": "2026-08-28T04:05:16.050990+00:00", "kind": "readme", "missing": false, "url": "https://github.com/BlackFan/client-side-prototype-pollution"}], "taxonomy_version": 1}, "when_to_choose": {"confidence": null, "enriched_at": "2026-08-30T03:45:47.540216+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "ea3ad5ac2886954beec17529945e05bc57ea6e3861a3d80fb64eb61816011be1", "fetched_at": "2026-08-28T04:05:16.050990+00:00", "kind": "readme", "missing": false, "url": "https://github.com/BlackFan/client-side-prototype-pollution"}], "taxonomy_version": 1}}, "score": {"components": {"activity": 0, "longevity": 100, "rhythm": 35}, "computed_at": "2026-09-02T17:46:02.011165+00:00", "flags": ["no_releases", "no_license"], "formula": "round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)", "inputs": {"age_days": 2164, "days_push": 949, "days_rel": null, "gap_med": null, "n_releases_24m": 0}, "score": 32, "version": 2}, "staleness": {"enrichment_outdated": false, "low_confidence": false, "scrape_days": 9, "stale_scrape": false}}