OWASP-Untrust will provide secure alternatives to commonly misused or risky programming constructs. The core idea is to replace unbounded, permissive types with restricted, secure types that validate their content at creation. Classic Type|Secure Alternative|Example Use Case Path|BoxedPath|Secure file system operations confined to a sandbox. String|BoundedString|Strings with length and content restrictions. int or Integer|BoundedInteger|Integer values bounded by a safe range. File Name (String)|Filename|Validates acceptable characters for file names. String (free text)|FreeText|Ensures safe characters for freeform text. String (user input)|UserName|Enforces length and character restrictions.