[Bug 22256] New: Add a note regarding first line of defense.
[filter-effects][css-masking] Move security model for resources to CSP
- Dirk Schulze (Thursday, 6 June)
- Boris Zbarsky (Sunday, 2 June)
- Dirk Schulze (Sunday, 2 June)
- Boris Zbarsky (Sunday, 2 June)
- Dirk Schulze (Sunday, 2 June)
- Boris Zbarsky (Sunday, 2 June)
- Boris Zbarsky (Sunday, 2 June)
- Dirk Schulze (Saturday, 1 June)
- Boris Zbarsky (Saturday, 1 June)
- Dirk Schulze (Saturday, 1 June)
- Anne van Kesteren (Saturday, 1 June)
[webappsec-testsuite] New test server for CSP testing.
[webappsec] CSP reporting and sandbox directive
[webappsec] No TPAC meeting in Shenzhen
[webappsec] plugin-types directive for CLSIDs in IE
[whatwg] Cross-Origin Cookies Sharing Proposal
Agenda for June 4 Teleconference
broadening default-src semantics
Content Security Policy
- Joel Weinberger (Tuesday, 18 June)
- Yoav Weiss (Tuesday, 18 June)
- Mountie Lee (Tuesday, 18 June)
- Mountie Lee (Tuesday, 18 June)
- Евнгений Яременко (Monday, 17 June)
- Brad Hill (Monday, 17 June)
- Bryan McQuade (Monday, 17 June)
- Neil Matatall (Monday, 17 June)
- Brad Hill (Monday, 17 June)
- Bryan McQuade (Monday, 17 June)
- Joel Weinberger (Monday, 17 June)
- Yoav Weiss (Monday, 17 June)
- Neil Matatall (Saturday, 15 June)
- Евнгений Яременко (Friday, 14 June)
Content Security Policy 1.1 : script-nonce or script-hash
Content Security Policy: inline style blocking, CSSOM and unsafe-eval
CORS Allow header in preflight response
Cross-domain information leak with UI Security Directives
Cross-Origin Cookies Sharing Proposal
CSP: connect-src
CSP: error handling
CSP: origin from a URL
cspBuilder Wizard
Fetching contexts
- Boris Zbarsky (Monday, 24 June)
- Anne van Kesteren (Monday, 24 June)
- Anne van Kesteren (Monday, 24 June)
- Boris Zbarsky (Monday, 24 June)
- Anne van Kesteren (Monday, 24 June)
- Adam Barth (Sunday, 23 June)
- Dirk Schulze (Sunday, 23 June)
- Adam Barth (Sunday, 23 June)
- Dirk Schulze (Sunday, 23 June)
- Boris Zbarsky (Sunday, 23 June)
- Adam Barth (Sunday, 23 June)
- Anne van Kesteren (Friday, 21 June)
- Anne van Kesteren (Friday, 21 June)
- Dirk Schulze (Thursday, 20 June)
- Boris Zbarsky (Thursday, 20 June)
- Anne van Kesteren (Thursday, 20 June)
- Boris Zbarsky (Thursday, 6 June)
- Anne van Kesteren (Thursday, 6 June)
Fwd: webappsec tests moved to GitHub
meta restrictions (ACTION 109)
policy-uri proposal (ACTION 97)
- Anne van Kesteren (Wednesday, 26 June)
- Bjoern Hoehrmann (Wednesday, 26 June)
- Anne van Kesteren (Wednesday, 26 June)
- Adam Barth (Wednesday, 26 June)
- Anne van Kesteren (Wednesday, 26 June)
- Anne van Kesteren (Wednesday, 26 June)
- Daniel Veditz (Wednesday, 26 June)
- Adam Barth (Wednesday, 26 June)
- Anne van Kesteren (Tuesday, 25 June)
- Adam Barth (Monday, 24 June)
- Anne van Kesteren (Monday, 24 June)
- Daniel Veditz (Monday, 24 June)
- Anne van Kesteren (Monday, 24 June)
- Adam Barth (Sunday, 23 June)
- Daniel Veditz (Tuesday, 18 June)
Possible bug in algorithm to match a source expression?
Specifying nonce-source for every directive
Supporting base64 in nonce-value
Today's call cancelled
Web Developer Security 1.0 - Training Tues 6/18
webappsec tests moved to GitHub
Last message date: Saturday, 29 June 2013 02:07:06 UTC