public-web-security@w3.org from June 2011 by thread

Publishing From-Origin Proposal as FPWD Anne van Kesteren (Thursday, 30 June)

heads-up: webappsec charter (basically) ready to ship Thomas Roessler (Tuesday, 28 June)

CSP: meta-refresh directive? Brian Smith (Monday, 27 June)

CSP: non-TLS scheme restrictions must allow TLS-enabled schemes automatically Brian Smith (Sunday, 26 June)

Proposed change: "xhr-src" to "connect" Brandon Sterne (Tuesday, 21 June)

CSP: setAttribute allows eval from string gaz Heyes (Thursday, 16 June)

Re: scrub-referrer directive? Mike Perry (Monday, 13 June)

Re: XSLT style sheets Brandon Sterne (Friday, 10 June)

Re: Interaction with Workers (was Re: setTimeout error handling) Brandon Sterne (Thursday, 9 June)

CSP and web analytics John Wilander (Wednesday, 8 June)

Re: script-src requirements Brandon Sterne (Wednesday, 8 June)

Missing from the report Nico Williams (Tuesday, 7 June)

Minutes, report? Login to wiki? Nico Williams (Tuesday, 7 June)

Req for feedback? Add attribute to elements to defeat clickjacking Eduardo Vela (Tuesday, 7 June)

REST-GSS I-D Nico Williams (Tuesday, 7 June)

New proposed charter and chairs for WebAppSec WG Hill, Brad (Monday, 6 June)

Re: Feature Request Access Containers Adam Barth (Thursday, 2 June)

Request for feedback: DOMCrypt API proposal David Dahl (Thursday, 2 June)

Last message date: Thursday, 30 June 2011 16:32:19 UTC