public-webappsec@w3.org from November 2017 by thread

SRI and signatures Devdatta Akhawe (Wednesday, 29 November)

Re: [w3c/wcag21] Security of autofill (#590) John Foliot (Friday, 24 November)

Vendor specification of their product's recommended Content-Security-Policy Jean-Baptiste Aviat (Friday, 24 November)

Signature-based SRI and CDNs Mark Nottingham (Thursday, 9 November)

No Conference call next week (Nov 15), new schedule in future Daniel Veditz (Wednesday, 8 November)

Github notifications->mailing list? Wendy Seltzer (Wednesday, 8 November)

draft minutes WebAppSec at TPAC Wendy Seltzer (Wednesday, 8 November)

webappsec-ACTION-222: Take a stab a specifying a cors switch "retry without creds on failure" Web Application Security Working Group Issue Tracker (Tuesday, 7 November)

slides? =JeffH (Tuesday, 7 November)

affiliated domains: DNS Administrative Boundaries =JeffH (Monday, 6 November)

webappsec-ACTION-221: Figure out new syntax and send to the list Web Application Security Working Group Issue Tracker (Monday, 6 November)

webappsec-ACTION-220: File issue on the spec to match firefox behavior Web Application Security Working Group Issue Tracker (Monday, 6 November)

webappsec-ACTION-219: And dveditz to send call for wide review for secure contexts Web Application Security Working Group Issue Tracker (Monday, 6 November)

webappsec-ACTION-218: And dveditz to send call for wide review for referrer policy Web Application Security Working Group Issue Tracker (Monday, 6 November)

Why the web needs finer-grained origins Artur Janc (Friday, 3 November)

Proposed TPAC Agenda Mike West (Wednesday, 1 November)

Last message date: Wednesday, 29 November 2017 10:24:14 UTC