Wednesday, 29 February 2012
- Re: Removing the same(ish) origin restriction on report-uri
- Re: CSP and cross-frame communication
- Re: CSP and cross-frame communication
- Re: Removing the same(ish) origin restriction on report-uri
Tuesday, 28 February 2012
- Draft minutes for 2012-02-14 Call
- RE: [webappsec] April F2F possibilities
- Re: [webappsec] straw man anti-clickjacking proposal
- Re: [webappsec] straw man anti-clickjacking proposal
- Re: [webappsec] straw man anti-clickjacking proposal
- Re: Removing the same(ish) origin restriction on report-uri
- [webappsec] Agenda for February 28 Conference Call
- Re: [webappsec] April F2F possibilities
- Re: Removing the same(ish) origin restriction on report-uri
- Removing the same(ish) origin restriction on report-uri
- [webappsec] call for tomorrow is on
- Re: [webappsec] 2/28 call
Monday, 27 February 2012
- Re: CSP and cross-frame communication
- Re: [webappsec] April F2F possibilities
- RE: [webappsec] 2/28 call
- [webappsec] April F2F possibilities
Saturday, 25 February 2012
Friday, 24 February 2012
- Re: [webappsec] 2/28 call
- Re: [webappsec] 2/28 call
- RE: [webappsec] 2/28 call
- Re: [webappsec] 2/28 call
- [webappsec] 2/28 call
Thursday, 23 February 2012
Wednesday, 22 February 2012
Wednesday, 15 February 2012
- Re: CSP and cross-frame communication
- RE: CSP and cross-frame communication
- Re: [webappsec] Updated proposal for CORS security considerations
- Re: CSP and cross-frame communication
Tuesday, 14 February 2012
- RE: [webappsec] Updated proposal for CORS security considerations
- RE: CSP and cross-frame communication
- webappsec-ISSUE-13 (URI Fragments in 1.1): Optionally include URI fragments in violation reports for v1.1
- Re: [webappsec] Updated proposal for CORS security considerations
- Re: [webappsec] Updated proposal for CORS security considerations
- Agenda for February14 Conference Call
Friday, 10 February 2012
Thursday, 9 February 2012
Monday, 6 February 2012
Tuesday, 7 February 2012
Monday, 6 February 2012
Sunday, 5 February 2012
Friday, 3 February 2012
- CSP and cross-frame communication
- Re: CSP versus Content-Type on scripts and stylesheets
- Re: CSP versus Content-Type on scripts and stylesheets
Thursday, 2 February 2012
- Re: CSP versus Content-Type on scripts and stylesheets
- Re: Two questions about violation reports
- Re: Removing request-headers from CSP violation reports
- Re: CSP versus Content-Type on scripts and stylesheets
- RE: Two questions about violation reports
- RE: Removing request-headers from CSP violation reports
- Re: Rate SVG resources to CSP directive
- Two questions about violation reports
- Removing request-headers from CSP violation reports
- Re: First policy policy (Action 34)