LogoClawIndex
CasesSkillsAbout
LogoClawIndex

xss-dom - DOM-Based XSS Exploitation Guide

Guide DOM-based XSS exploitation during authorized penetration testing.

Tags

Updated: 2026-09-24
DOM XSSpenetration testingburpsuiteDOM Invaderclient-side XSS

Capabilities

Assess target pageIdentify sourcesIdentify sinksTrace data flow

Typical Inputs

Target page URLSuspected sourceSuspected sink

Typical Outputs

Screen activation logEvidence files in engagement directoryReturn summary

What this skill does

  • Assess target page
  • Identify sources
  • Identify sinks
  • Trace data flow
  • Demonstrate impact
  • Escalate or pivot

Inputs

  • Target page URL
  • Suspected source
  • Suspected sink
  • Engagement state

Outputs

  • Screen activation log
  • Evidence files in engagement directory
  • Return summary

Requirements

  • Explicit written authorization
  • Access to target page JavaScript
  • Browser tools with JavaScript execution

Source

  • Spec: SKILL.md

ClawIndex

OpenClaw Skills & Use Case Index

ClawIndex is an ecosystem-driven index of OpenClaw skills and real-world use cases.

Index

Skills·
Cases

Meta

About·
Disclaimer·
Email·
GitHub
© 2026 ClawIndex All Rights Reserved.