All 4 sensors scoped to puppys.click only — eval_hook, shadow_dom_patch_research, shadow_dom_kb_collection_test, shadow_dom_image_hashes_test.
uid_pattern: ^uid_fefe · url: puppys\.click
>300 chars and keywords: powershell, curl, iex, frombase64string, verify you are human, Win+R.
<300 chars, no keywords.
>300 chars but zero malicious keywords → keyword gate blocks.
Has keywords but <300 chars → length gate blocks.
innerText >100 chars, no \n\n\n runs. Extractor captures textContent + URLs + id + className.
Nested shadow hosts, each >100 chars innerText, no triple-newline.
innerText >100 chars but contains \n\n\n → negation gate blocks.
innerText is only ~30 chars → length gate blocks.
Closed shadow roots are invisible to the patch.
Shadow host created by a Chrome extension (filtered by shadowDomFilter.stackTrace). Simulated via comment in log.
<slot name="full-post-link"> inside an open shadow root. The tab sensor with shadowDom: "on" should reach in and extract outerHTML.
<slot name="other-slot"> — selector slot[name='full-post-link'] won't match.
An <img src="..."> inside an open shadow root (>5KB). The asset_collection sensor with shadowDom: "on" should hash it.
1x1 pixel image inside shadow — below minSize: 5000 filter.