[webappsec] DRAFT TPAC 2012 agenda
[webappsec] CORS bug 19315
Pub request: FPWD of User Interface Safety Directives for CSP
Re: CSP violations introduced by Addons / Extensions
Re: Trigger a DOM event/error when a CSP violation happens.
- Re: Trigger a DOM event/error when a CSP violation happens.
- Re: Trigger a DOM event/error when a CSP violation happens.
[webappsec] updated draft SVG: simple CORS request
[webappsec] Teleconference agenda for WebAppSec WG teleconference, Oct 23
CSP and inline styles
Re: Fwd: When is the CORS Candidate Recommendation going to be published? [Was: Re: Cancelled: May 22 Telecon]
CSP 1.0: Are UAs permitted to implement reporting as opt-in?
- RE: CSP 1.0: Are UAs permitted to implement reporting as opt-in?
- Re: CSP 1.0: Are UAs permitted to implement reporting as opt-in?
- RE: CSP 1.0: Are UAs permitted to implement reporting as opt-in?
CSP and <base> Tag Injection + Suggestion for New CSP Directive "base-src" in CSP 1.1
Report-uri same-origin restrictions?
Re: Advice about unprefixing Content-Security-Policy in WebKit
Re: CSP 1.1: Paths in source list definitions.
Resolution of post-Last Call comments on CSP 1.0 by Fred Andrews and Boris Zbarsky
- Re: Resolution of post-Last Call comments on CSP 1.0 by Fred Andrews and Boris Zbarsky
- RE: Resolution of post-Last Call comments on CSP 1.0 by Fred Andrews and Boris Zbarsky
- Re: Resolution of post-Last Call comments on CSP 1.0 by Fred Andrews and Boris Zbarsky
- RE: Resolution of post-Last Call comments on CSP 1.0 by Fred Andrews and Boris Zbarsky