-
Notifications
You must be signed in to change notification settings - Fork 0
[R6/E1] Sandbox/whitelist #25
Copy link
Copy link
Open
Labels
DXCLI/REPL/Dev ExperienceCLI/REPL/Dev ExperienceINTInterpreterInterpreterQATests/CITests/CISECSecurity/SandboxSecurity/SandboxroadmapFeature planned for implementation in the project.Feature planned for implementation in the project.
Milestone
Description
Objetivo
Criar modo sandbox para rodar código não confiável com interop controlado.
Tarefas
- Flag
--sandboxna CLI - Em sandbox:
- bloquear acesso direto a
globalThis - oferecer whitelist configurável (ex.:
Math,Date,console) - bloquear
Function,eval,process(Node),require(se aplicável)
- bloquear acesso direto a
- Testes:
- tentativa de acessar
processfalha -
js/Mathfunciona se permitido
- tentativa de acessar
DoD
- Sandbox documentado e testado
- Default seguro quando sandbox ativo
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
DXCLI/REPL/Dev ExperienceCLI/REPL/Dev ExperienceINTInterpreterInterpreterQATests/CITests/CISECSecurity/SandboxSecurity/SandboxroadmapFeature planned for implementation in the project.Feature planned for implementation in the project.
Projects
Status
Milestone 6