public-webappsec@w3.org from November 2011 by subject

[Bug 14663] Advice on CORS and caches

[Bug 14664] Defining CORS headers

[Bug 14665] Content-Type is not a simple header

[Bug 14666] Be clearer about cookies and CORS

[Bug 14700] New: Point out that Access-Control-Allow-Origin:* is safe for servers not behind a firewall

[webappsec WG] Please review your open issues

Agenda for WebAppSec WG Call, Nov 22, 22:00-23:00 UTC

CfC: publish FPWD of Content Security Policy: Deadline Nov 22

CORS bugs

CORS moving towards W3C Recommendation - thoughts on UMP?

CORS non-editorial edits done I think

CSP experimental.html spec version (was: Agenda for WebAppSec WG Call, Nov 22, 22:00-23:00 UTC)

fyi: WebDriver API F2F meeting in London, 2012-01-11

ISSUE-5: Is covering identical UI with different effects in-scope? e.g. "like" button that doesn't indicate what you're liking

ISSUE-8: Identify proper behavior for html added via plubins / object tag

New email alias for WebAppSec WG test suite work

Regrets: Agenda for WebAppSec WG Call, Nov 22, 22:00-23:00 UTC

Transition Request: Content Security Policy to FPWD

W3C WebAppSec WG Meeting

WebAppSec TPAC Day 1 Recap

WebAppSec TPAC Day 2 Recap

WebAppSec WG: Poll for meeting time slot

webappsec-ISSUE-6 (sandbox): Should the sandbox directive be part of CSP 1.0?

webappsec-ISSUE-7 (policy-uri): Should the policy-uri directive be in CSP 1.0?

Where to define the sandbox directive (was Re: CfC: publish FPWD of Content Security Policy: Deadline Nov 22)

Last message date: Tuesday, 29 November 2011 20:46:43 UTC