Re: [w3c/FileAPI] Store HTTPS state on Blob objects (#35)

Note that this will solve at least one source of CSP bypasses (request data from the web, put it into a blob, then `window.open` the blob). It's something I'm interested in doing for Chrome, I just haven't taken time yet.

---
You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub:
https://github.com/w3c/FileAPI/issues/35#issuecomment-205282564

Received on Monday, 4 April 2016 12:48:00 UTC