W3C home > Mailing lists > Public > www-archive@w3.org > February 2008

review Access Control for Cross-site Requests?

From: Anne van Kesteren <annevk@opera.com>
Date: Sat, 02 Feb 2008 12:02:52 +0100
To: collinj@cs.stanford.edu
Cc: www-archive@w3.org
Message-ID: <op.t5v8xvos64w2qv@annevk-t60.oslo.opera.com>

Hey,

I saw you worked on JSONRequest and have done a fair amount of security  
research into Web browsers, etc. Any chance you could review the stuff  
we're planning for XMLHttpRequest Level 2 and other protocols (such as  
server-sent events, XSLT, and XBL 2.0):

   http://dev.w3.org/2006/webapi/XMLHttpRequest-2/
   http://dev.w3.org/2006/waf/access-control/

These documents are still changing and feedback is welcome on  
public-webapi@w3.org for the former and public-appformats@w3.org for the  
latter (in due course these activities will be merged under a single WG if  
all goes well). You can also e-mail me directly if that's more convenient,  
although in that case I'd prefer if you cc'ed a public mailing list, such  
as www-archive@w3.org as I've done here.

Kind regards,


-- 
Anne van Kesteren
<http://annevankesteren.nl/>
<http://www.opera.com/>
Received on Saturday, 2 February 2008 10:59:41 GMT

This archive was generated by hypermail 2.2.0+W3C-0.50 : Monday, 7 July 2008 08:10:25 GMT