Workshop Intro 15:30 - 18:00 August 08, 2025

Aaron Shim

Mayra Robles

Cross-site scripting (XSS) remains a critical threat to web applications. This intensive, hands-on training session moves beyond theory to empower you to transform your web application codebase into a bastion of security, adhering to the rigorous standards pioneered at Google. We will equip you with the practical skills and tools to implement a defense-in-depth strategy, aiming for a future where XSS is a mitigated threat.

n this workshop, you won't just hear about solutions; you'll actively implement them. We will guide you through the step-by-step deployment of Google's most effective runtime protections against XSS—strict Content Security Policy and Trusted Types—drawing from our experience rolling these out across hundreds of products serving billions of users. You'll learn to integrate these with powerful compile-time protections to create a comprehensive security posture.

Aaron Shim

Senior Software Engineer @ Google

Aaron is a Senior Software Engineer at Google working on product security across all of Google's user facing webapps. Bridging the gap between security and development work, he has worked on product teams at both Google and Microsoft in the past, including Docs, GCP, and Visual Studio. He is extremely passionate about the developer experience and committed to empowering every dev to build the most secure and delightful products.


Mayra Robles

Software Engineer @ Google

Mayra Robles is a Software Engineer on Google's Information Security team. She specializes in web security and the protection of agentic systems. As an intern, she focused on making Trusted Types more user-friendly, debuggable, and easier to deploy at scale. Before focusing on security, she completed two internships at Microsoft, where she worked on user-facing features and pioneered workflows for AI-powered productivity interactions in the Edge browser. A native of Ciudad Juarez, Mexico, and a graduate of the University of Texas at El Paso, Mayra now lives in New York City and enjoys the local theater scene.