Friday, 30 August 2013
- Re: [webappsec] CSP: are blob uri's really just origin='self'?
- Re: [webappsec] CSP: are blob uri's really just origin='self'?
- Re: [webappsec] CSP: are blob uri's really just origin='self'?
- Re: [webappsec] CSP: are blob uri's really just origin='self'?
- Re: [webappsec] CSP: are blob uri's really just origin='self'?
- Re: [webappsec] CSP: are blob uri's really just origin='self'?
- [webappsec] CSP: are blob uri's really just origin='self'?
- Re: Sub-origins
Thursday, 29 August 2013
- CORS to PR
- Re: Sub-origins
- Re: Sub-origins
- Re: Sub-origins
- Re: Sub-origins
- Re: Sub-origins
- Re: Sub-origins
Tuesday, 27 August 2013
- Re: Proposed CSRF countermeasure
- Re: Proposed CSRF countermeasure
- Re: Proposed CSRF countermeasure
- Agenda for 8/27/13 Conference Call
- Re: CSP 1.1 and image loading elements/attributes
Monday, 26 August 2013
- Re: Sub-origins
- Re: Sub-origins
- Re: Sub-origins
- Re: Sub-origins
- Re: Sub-origins
- CSP 1.1 and image loading elements/attributes
- Re: Proposed CSRF countermeasure
Thursday, 22 August 2013
Wednesday, 21 August 2013
- Re: [CORS] Understanding the definition of simple headers
- Re: [CORS] Understanding the definition of simple headers
- [CORS] Understanding the definition of simple headers
Tuesday, 20 August 2013
Monday, 19 August 2013
Sunday, 18 August 2013
Thursday, 15 August 2013
Friday, 16 August 2013
- Fwd: [webappsec + webapps] CORS to PR plans
- Re: [webappsec + webapps] CORS to PR plans
- Re: Audio & security
Tuesday, 13 August 2013
Monday, 12 August 2013
- [webappsec] Proposed Agenda for 13-Aug-2013 WebAppSec WG Teleconference
- ACTION-147 RFC script-hash proposal v2
- Re: [webappsec + webapps] CORS to PR plans
- Re: [webappsec + webapps] CORS to PR plans
Friday, 9 August 2013
Wednesday, 7 August 2013
- Re: Supporting base64 in nonce-value
- Re: CSP 1.1: Nonce-source and unsafe-inline
- Re: Supporting base64 in nonce-value
- Re: CSP 1.1: Nonce-source and unsafe-inline
Tuesday, 6 August 2013
Monday, 5 August 2013
- Re: [webappsec + webapps] CORS to PR plans
- Re: De-duplicating violation reports?
- Re: Supporting base64 in nonce-value
- Re: Sub-origins
Thursday, 1 August 2013
Saturday, 3 August 2013
Friday, 2 August 2013
- Re: Including the Javascript stack trace in the ContentSecurityPolicy report
- Re: Including the Javascript stack trace in the ContentSecurityPolicy report
- Re: Including the Javascript stack trace in the ContentSecurityPolicy report
- Re: Including the Javascript stack trace in the ContentSecurityPolicy report
- Re: Including the Javascript stack trace in the ContentSecurityPolicy report
- Re: Including the Javascript stack trace in the ContentSecurityPolicy report
- Re: Including the Javascript stack trace in the ContentSecurityPolicy report
- Re: Including the Javascript stack trace in the ContentSecurityPolicy report
- Re: Including the Javascript stack trace in the ContentSecurityPolicy report
- Including the Javascript stack trace in the ContentSecurityPolicy report