Weekly github digest (WebAppSec specs)

Issues
------
* w3c/webappsec-csp (+2/-0/💬1)
  2 issues created:
  - Why does plugin-types use the empty list instead of 'none'? (by bakkot)
    https://github.com/w3c/webappsec-csp/issues/420 
  - Where is the Content Security Policy Directive registry? (by bakkot)
    https://github.com/w3c/webappsec-csp/issues/419 

  1 issues received 1 new comments:
  - #419 Where is the Content Security Policy Directive registry? (1 by sideshowbarker)
    https://github.com/w3c/webappsec-csp/issues/419 

* w3c/webappsec-referrer-policy (+1/-0/💬0)
  1 issues created:
  - Clarify priority on five ways of Referrer Policy Delivery (by sulume)
    https://github.com/w3c/webappsec-referrer-policy/issues/131 

* w3c/webappsec-secure-contexts (+0/-0/💬4)
  1 issues received 4 new comments:
  - #69 Can data: URLs be part of a secure context? (4 by annevk, bzbarsky)
    https://github.com/w3c/webappsec-secure-contexts/issues/69 

* w3c/webappsec-feature-policy (+2/-0/💬10)
  2 issues created:
  - Document Policy and Reporting (by clelland)
    https://github.com/w3c/webappsec-feature-policy/issues/362 
  - Spec source file uses "section autolinks" incorrectly, they'll start breaking (by tabatkins)
    https://github.com/w3c/webappsec-feature-policy/issues/361 

  5 issues received 10 new comments:
  - #362 Document Policy and Reporting (6 by annevk, clelland, jpchase)
    https://github.com/w3c/webappsec-feature-policy/issues/362 
  - #361 Spec source file uses "section autolinks" incorrectly, they'll start breaking (1 by clelland)
    https://github.com/w3c/webappsec-feature-policy/issues/361 
  - #357 Feature Policy shouldn't be overridable (1 by jpchase)
    https://github.com/w3c/webappsec-feature-policy/issues/357 
  - #349 Disable DOM clobbering. (1 by petamoriken)
    https://github.com/w3c/webappsec-feature-policy/issues/349 
  - #207 Feature-Policy and Workers (1 by oyiptong)
    https://github.com/w3c/webappsec-feature-policy/issues/207 [duplicate] 

* WICG/trusted-types (+1/-1/💬1)
  1 issues created:
  - Spec source file uses "section autolinks" incorrectly, they'll start breaking (by tabatkins)
    https://github.com/w3c/webappsec-trusted-types/issues/254 

  1 issues received 1 new comments:
  - #254 Spec source file uses "section autolinks" incorrectly, they'll start breaking (1 by koto)
    https://github.com/w3c/webappsec-trusted-types/issues/254 

  1 issues closed:
  - Spec source file uses "section autolinks" incorrectly, they'll start breaking https://github.com/w3c/webappsec-trusted-types/issues/254 



Pull requests
-------------
* w3c/webappsec-csp (+0/-0/💬1)
  1 pull requests received 1 new comments:
  - #417 Drop mention of obsolete require-sri-for directive (1 by dontcallmedom)
    https://github.com/w3c/webappsec-csp/pull/417 

* w3c/webappsec-feature-policy (+0/-1/💬1)
  1 pull requests received 1 new comments:
  - #360 Remove obsolete speaker policy (1 by clelland)
    https://github.com/w3c/webappsec-feature-policy/pull/360 

  1 pull requests merged:
  - Remove obsolete speaker policy
    https://github.com/w3c/webappsec-feature-policy/pull/360 

* WICG/trusted-types (+1/-1/💬0)
  1 pull requests submitted:
  - Fix #254. (by koto)
    https://github.com/w3c/webappsec-trusted-types/pull/255 

  1 pull requests merged:
  - Fix #254.
    https://github.com/w3c/webappsec-trusted-types/pull/255 


Repositories tracked by this digest:
-----------------------------------
* https://github.com/w3c/webappsec
* https://github.com/w3c/webappsec-subresource-integrity
* https://github.com/w3c/webappsec-csp
* https://github.com/w3c/webappsec-mixed-content
* https://github.com/w3c/webappsec-upgrade-insecure-requests
* https://github.com/w3c/webappsec-credential-management
* https://github.com/w3c/permissions
* https://github.com/w3c/webappsec-referrer-policy
* https://github.com/w3c/webappsec-secure-contexts
* https://github.com/w3c/webappsec-clear-site-data
* https://github.com/w3c/webappsec-cowl
* https://github.com/w3c/webappsec-epr
* https://github.com/w3c/webappsec-suborigins
* https://github.com/w3c/webappsec-cspee
* https://github.com/w3c/webappsec-feature-policy
* https://github.com/w3c/webappsec-fetch-metadata
* https://github.com/WICG/trusted-types
* https://github.com/w3c/webappsec-unofficial-drafts

Received on Monday, 20 January 2020 17:00:18 UTC