Re: [spec-reviews] CSP (#42)

@mikewest - I don't see how CSP Pinning helps, because a server doesn't know when it's safe to omit CSP headers for any give request. 

Anyway, I owe you a straw-man proposal, I think...

---
Reply to this email directly or view it on GitHub:
https://github.com/w3ctag/spec-reviews/issues/42#issuecomment-143646250

Received on Monday, 28 September 2015 05:57:02 UTC