- From: Anne van Kesteren <notifications@github.com>
- Date: Thu, 04 Apr 2024 04:41:33 -0700
- To: whatwg/webidl <webidl@noreply.github.com>
- Cc: Subscribed <subscribed@noreply.github.com>
Received on Thursday, 4 April 2024 11:41:38 UTC
@annevk commented on this pull request.
> @@ -11056,6 +11091,21 @@ allowed. The security check takes the following three inputs:
Note: The HTML Standard defines how a security check is performed. [[!HTML]]
+Certain algorithms are defined to
+<dfn id="dfn-validate-the-string-in-context" export>validate the string in context</dfn> on a given
+value. This check is used to determine whether a given value
+is appropriate for its {{StringContext}}. This validation takes the following four inputs:
+
+1. the [=platform object=] on
+ which the operation invocation or attribute access is being done,
+1. the value to validate,
+1. the {{StringContext}} [=identifier=], and
+1. the [=identifier=] of the operation or attribute.
+
+The algorithm returns an ECMAScript value, or [=JavaScript/throws=] a <l spec=ecmascript>{{TypeError}}</l>.
+
+Note: The HTML Standard defines how the validation is performed. [[!HTML]]
It overwrites it first in 1.2 as far as I can tell. At least judging from https://w3c.github.io/trusted-types/dist/spec/#html-validate-the-string-in-context.
--
Reply to this email directly or view it on GitHub:
https://github.com/whatwg/webidl/pull/1392#discussion_r1551512708
You are receiving this because you are subscribed to this thread.
Message ID: <whatwg/webidl/pull/1392/review/1979614193@github.com>
Received on Thursday, 4 April 2024 11:41:38 UTC