[w3ctag/design-reviews] Review of signature-based resource loading restrictions. (#186)

Hello TAG!

## I'm requesting a TAG review of:

  - Name: Signature-based Resource Loading Restrictions
  - Specification URL: [working on it, just an explainer for now]
  - Explainer, Requirements Doc, or Example code: https://github.com/mikewest/signature-based-sri
  - Primary contacts: @mikewest, @otherdaniel

## Further details (optional):

  Relevant time constraints or deadlines: Q4ish?
  - [X] I wrote the [Self-Review Questionnare on Security and Privacy](https://www.w3.org/TR/security-privacy-questionnaire/), but haven't applied it to this feature yet.
  - [X] I have reviewed the TAG's [API Design Principles](https://w3ctag.github.io/design-principles/)

## You should also know that...

There's a discussion starting at https://lists.w3.org/Archives/Public/public-webappsec/2017Jun/0000.html that's quite relevant. @sleevi's comments at https://lists.w3.org/Archives/Public/public-webappsec/2017Jun/0004.html are particularly intriguing.

## We'd prefer the TAG provide feedback as (please select one):

  - [X] open issues in our Github repo for each point of feedback
  - [ ] open a single issue in our Github repo for the entire review
  - [ ] leave review feedback as a comment in this issue and @-notify [github usernames]

-- 
You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub:
https://github.com/w3ctag/design-reviews/issues/186

Received on Thursday, 10 August 2017 09:51:12 UTC