# @locker/internal-policy

> Lightning Web Security trusted types package.

Latest version **0.28.11** (published 2026-09-23) · SEE LICENSE IN LICENSE.txt license · 0 weekly downloads

## Install

```sh
npm install @locker/internal-policy
pnpm add @locker/internal-policy
yarn add @locker/internal-policy
bun add @locker/internal-policy
```

## Health

**Score 60/100 (C)** — status: active.

Positive: esm support; no vulnerabilities; recently updated; high maintenance score.

Warnings: low downloads; no types; pre 1.0.

## Facts

| | |
|---|---|
| Version | 0.28.11 |
| Published | 2026-09-23 |
| First published | 2023-05-15 |
| Weekly downloads | 0 |
| License | SEE LICENSE IN LICENSE.txt |
| TypeScript types | none |
| Module format | ESM + CommonJS |
| Dependencies | 5 |
| Unpacked size | 33.1 KB |
| Known vulnerabilities | 0 |
| Install scripts | no |
| Author | Salesforce UI Security Team |
| Maintainers | mjasso, caridy, jdalton, t.lau, dejang, rwaldron, garychangsf, achabot |

## Links

- npm: https://www.npmjs.com/package/@locker/internal-policy
- npm.io page: https://npm.io/package/@locker/internal-policy

## Dependencies (5)

- [@locker/shared](https://npm.io/package/@locker/shared.md) 0.28.11
- [@locker/shared-dom](https://npm.io/package/@locker/shared-dom.md) 0.28.11
- [@locker/shared-url](https://npm.io/package/@locker/shared-url.md) 0.28.11
- [@locker/trusted-types](https://npm.io/package/@locker/trusted-types.md) 0.28.11
- [@locker/html-sanitizer](https://npm.io/package/@locker/html-sanitizer.md) 0.28.11

## Recent versions

- 0.28.11 (latest) — 2026-09-23
- 0.29.2 — 2026-09-21
- 0.28.10 — 2026-09-04
- 0.27.10 — 2026-09-03
- 0.28.9 — 2026-09-01
- 0.27.9 — 2026-08-31
- 0.27.8 — 2026-08-31
- 0.28.8 — 2026-08-20
- 0.29.1 — 2026-08-20
- 0.29.0 — 2026-08-18
- 0.28.7 — 2026-08-12
- 0.28.6 — 2026-07-31
- 0.28.5 — 2026-07-23
- 0.28.4 — 2026-07-01
- 0.27.7 — 2026-06-23
- … 93 more at https://npm.io/package/@locker/internal-policy/versions

## README

# @locker/internal-policy

> Lightning Web Security Trusted LWS Policy

This package is meant to be only usable internally by `@locker` packages.

Signing Example:
```js
  import { lwsInternalPolicy } from '@locker/internal-policy'

  script.src = lwsInternalPolicy.createScriptURL('...');
```

NOTE: if polyfills are needed to support additional trustedTypes functionality, such as getAttributeType or getPropertyType, the code at https://github.com/w3c/trusted-types/blob/main/src/trustedtypes.js is a great resource to get started.

---
_Source: https://npm.io/package/@locker/internal-policy · Machine-readable twin of the npm.io package page. Health data is recomputed on every publish._
