*** Welcome to Plebis — explore your favorite projects and proposals *** Authorize Indexer Performance Upgrade v1.6.1 • Injective Protocol • 0h 0m left *** Security validation for InjHub proposal rendering • Injective Protocol • 0h 0m left *** Migrate ServiceRegistry contract • Axelar Network • 0h 0m left *** Update Oracle Feeds to Pyth Pro for Various Perpetual Markets on Injective Exchange dApps Batch 2 • Stargaze • 0h 0m left *** Update Oracle Feeds for Various Perpetual Markets on Injective Exchange dApps • Injective Protocol • 26h left *** Fund Hypha to operate the Hub's public testnet program for 2026/2027 • Cosmos Hub • 117h left
Injective Protocol Logo

Injective Protocol

#653

Security validation for InjHub proposal rendering

Proposal Type: Text (Signaling)

DEPOSIT

Time Remaining

Ended

Proposal Contents (*the original text from the proposer)

This proposal is a non-invasive authorized security validation for Cantina finding #121. It contains an image-only callback payload to verify that InjHub renders proposal summary HTML under the production InjHub route. No JavaScript is executed, no wallet APIs are called, and no user data is collected.

injhub-121-blind-xss

Deposit Period

This proposal is currently in the Deposit period. Voting will commence if, and when, the deposit requirement has been met.

Vox Populi

Community discussions related to the proposal.

There do not appear to be any discussions on this proposal at this time.