ISSUE-194 (SizeMatters): Window sizing a must [wsc-xit]

ISSUE-194 (SizeMatters): Window sizing a must [wsc-xit]

http://www.w3.org/2006/WSC/track/issues/

Raised by: Mary Ellen Zurko
On product: wsc-xit

http://www.w3.org/2006/WSC/drafts/rec/rewrite.html#Robustness

Change SHOULD's to MUSTs in the following: 

Web user agents SHOULD restrict window sizing and moving operations 
consistent with 7.1.2 Keep Security Chrome Visible. This prevents attacks 
wherein browser chrome is obscured by moving it off the edges of the 
visible screen.
Web user agents SHOULD NOT allow web content to open new windows with the 
browser's security UI hidden. Allowing this operation facilitates 
picture-in-picture attacks, where artificial chrome (usually indicating a 
positive security state) is supplied by the web content in place of the 
hidden UI.

Received on Friday, 25 April 2008 18:15:11 UTC