html-conform
A Rust library for HTML5 specification conformance checking โ validated against the Nu Html Checker (vnu)'s differential test corpus (0 false positives, 99.98 % accuracy across 4,655 fixtures), without a JVM, subprocesses, or HTTP network requests. Embeddable directly into any Rust application, CLI, or web service.
๐ฏ Conformance Profile & Metrics
html-conform is validated continuously against the official W3C/vnu differential test suite (4,655 test fixtures vendored from validator/validator@388cb36).
- Precision Floor: 0 False Positives (
BASELINE_FALSE_POSITIVE = 0) โ zero false alarms across all 4,655 test cases. - Accuracy: 99.98 % overall accuracy across the entire corpus (3,745 True Positives, 909 True Negatives).
- Residual False Negatives: 1 / 4,655, deliberate rather than unimplemented: flagging a mistyped property name inside
<style>needs a real CSS parser plus the full CSS property registry (vnu delegates this to a vendored W3C CSS Validator; a single corpus fixture is too little evidence for that surface area). It is a documented, deliberate limitation, not a silent gap. (The 2D table cell grid, formerly the largest remaining gap, landed assrc/table_integrity.rs; real tree-construction-error tracking landed earlier viahtml5-parser0.3.0.) - One measured deviation from the corpus, by design: the missing-
langwarning. vnu's own test runner setsnu.validator.checker.ignoreMissingLang=trueglobally and flips it tofalseonly for the single fixture whose filename containsmissing-lang, so 752 expected-clean fixtures have nolangattribute merely because the check was switched off when their expectations were recorded. Real, production vnu warns on all of them, and so doeshtml-conformโ the differential test corrects for the harness artifact in its comparison (tests/differential.rs'shas_findings_for_comparison) instead of the checker shipping less than vnu.
๐ Validation Layers
html-conform combines six independent finding sources into a single, unified CheckReport:
- HTML5 Tree Construction (
parser.html5) โ Spec-compliant, error-tolerant tree parsing viahtml5-parser. Emits tokenizer, DOCTYPE, and tree-construction parse findings with line, column, and byte offset locations. - Grammar & Content Model (
schema.html5) โ Validation against the full vendored W3C RELAX NG schema (relax-ng), including SVG 1.1 and MathML 3 subtrees. - Custom Datatype Micro-Syntaxes (
w:*) โ Full spec-compliant datatype validation for 50 custom W3C attribute microsyntaxes (w:image-candidate-stringsforsrcset,w:content-security-policy,w:media-query,w:datetime,w:iri-ref, BCP 47 language tags, etc.). - Schematron Co-Constraints (
rules/*.sch) โ High-precision assertion rules viaschematron-engineandxpath-eval(ARIA 1.2 constraints, structural HTML restrictions, heading hierarchy, link/script attribute combinations). - Script & CSP Validation (
scripts.import-map,scripts.speculation-rules,csp.meta-enforcement) โ Dedicated JSON validation for<script type="importmap">/<script type="speculationrules">contents, and Content Security Policy (<meta http-equiv="Content-Security-Policy">) enforcement against inline scripts/styles viacsp-parse. - Table Cell Grid (
tables.integrity) โ Lays every table out over itscolspan/rowspanvalues to detect overlapping cells, cells spanning past the end of their row group, and columns that no cell ever begins in โ a stateful 2D grid walk that the declarative XPath 1.0 rule layer cannot express.
๐ Usage
Add html-conform to your Cargo.toml:
[]
= "0.2.0"
Basic Check
use check;
Fine-Grained Options
use ;
let options = CheckOptions ;
let report = check_with_options.unwrap;
๐๏ธ Architecture
HTML Source String / Document
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ 1. html5-parser โ WHATWG Tree Construction
โโโโโโโโโโโโโโโโโโโโโโโ
โ
โโโโโโโโโโโโโโโโโโโโผโโโโโโโโโโโโโโโโโโโ
โผ โผ โผ
โโโโโโโโโโโโโโโโโโโโ โโโโโโโโโโโโโโโโโ โโโโโโโโโโโโโโโโโโโโ
โ 2. relax-ng โ โ 3. Schematron โ โ 4. JSON / CSP โ
โ (Schema & โ โ (Co-Con- โ โ (Import-Maps, โ
โ Datatypes) โ โ straints) โ โ Speculation, โ
โโโโโโโโโโโโโโโโโโโโ โโโโโโโโโโโโโโโโโ โ CSP) โ
โ โ โโโโโโโโโโโโโโโโโโโโ
โโโโโโโโโโโโโโโโโโโโผโโโโโโโโโโโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโโโ
โ CheckReport โ
โ Vec<Finding> โ
โโโโโโโโโโโโโโโโโโโโโโโโโ
๐ Maintenance & Refinement Loops
html-conform enforces quality through structured maintenance loops:
- Loop A (Schema Sync): Mechanical updates when W3C RELAX NG schemas or vnu upstream specifications update (
xtask/vendor-corpus.sh). - Loop B (Assertion Refinement Loop): Iterative refinement of Schematron rules and datatype checkers against the 4,655-fixture differential test suite, strictly maintaining the 0 False Positive floor.
- Loop C (Real-World Sanity Check): Supplementary, manual/non-CI signal that fetches real websites and diffs
html-conform's findings against a locally-run Nu Html Checker (vnu) jar (xtask/fetch-real-world.sh+xtask/compare-real-world.sh, seextask/README.md). Not part of the pinned 4,655-fixture corpus baseline, and not expected to hit 0 false positives โ real pages carry their own unrelated markup errors.
๐งช Fuzzing & Benchmarks
- Fuzzing:
fuzz/is a standalonecargo-fuzzcrate (requires a nightly toolchain) that feeds arbitrary bytes through the wholecheck()pipeline. Local dev tool only โ not run in CI:
(thetests/corpus/htmlargument seeds the fuzzer from the existing corpus without copying it; crashes land infuzz/artifacts/check/). - Benchmarks:
benches/check.rs(criterion) timescheck()against a small typical page and a large, table-heavy real-world page fromtests/corpus/. CI only compiles the benchmarks (cargo bench --no-run) to catch bit-rot; run them locally for actual numbers:
๐ License & Attributions
- Code: MIT License โ see
LICENSEorLICENSES/MIT.txt. This is a REUSE-compliant project. - Third-Party & Vendored Assets: the RELAX NG schema and test corpus (
schema/,tests/corpus/) are vendored fromvalidator/validatorunder the MIT License, not authored by this project โ seeTHIRD-PARTY-NOTICES.md.