# pgaijin66/XSS-Payloads

This repository holds all the list of advanced XSS payloads that can be used in penetration testing. These payloads can be loaded into XSS scanners as well.

Repository: https://github.com/pgaijin66/XSS-Payloads
Canonical: https://ross.abutalabs.com/products/pgaijin66-xss-payloads
License: GPL-3.0
License Family: copyleft
Topics: xss, xss-payloads, advanced-xss
Last push: 2024-07-16T12:53:40+00:00

## Health v2 (maintenance only)
Score: 23/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 0, release rhythm 8, longevity 100
- inputs: {"age_days": 3662, "days_push": 778, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: none
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1141, forks 793 (observed 2026-08-28T04:03:44.639930+00:00)

## What it is
A curated collection of advanced cross-site scripting (XSS) payloads intended for use in penetration testing. The payload lists can be loaded into XSS scanners and security testing tools.

## Use cases
- find xss payloads for penetration testing
- load xss payload list into a vulnerability scanner
- test web application for cross-site scripting vulnerabilities
- build a custom xss fuzzer with a payload wordlist
- learn advanced xss injection techniques

## When to choose
- you need a ready-made XSS payload list for a scanner or fuzzer
- you are doing authorized penetration testing of web applications
- you want a community-curated XSS wordlist rather than writing your own

## When to avoid
- you need a scanner or tool that runs the payloads, not just a list
- you are looking for general web security training material
- you need payloads for vulnerability classes other than XSS

## Facets
- artifact type: dataset
- maturity: maintenance
- function: security, penetration-testing, vulnerability-scanning
- domain: security, penetration-testing
- platform: cross-platform
- tags: xss, payloads, wordlist, cross-site-scripting, security-testing

## Member repositories
- pgaijin66/XSS-Payloads (main) score 23

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:03:44.639930+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T06:35:24.525782+00:00, confidence not recorded.
  - readme: https://github.com/pgaijin66/XSS-Payloads (fetched 2026-08-28T04:03:44.639930+00:00, sha 7b8c58ebc935)
- Data as of 2026-08-30T08:39:29.467469+00:00.
