Supporting base64 in nonce-value
[webappsec] CSP reporting and sandbox directive
- Re: [webappsec] CSP reporting and sandbox directive
- Re: [webappsec] CSP reporting and sandbox directive
Re: CSP: error handling
CSP: origin from a URL
Content Security Policy: inline style blocking, CSSOM and unsafe-eval
Re: Possible bug in algorithm to match a source expression?
Cross-Origin Cookies Sharing Proposal
Re: CORS Allow header in preflight response
CSP: connect-src
meta restrictions (ACTION 109)
policy-uri proposal (ACTION 97)
- Re: policy-uri proposal (ACTION 97)
Today's call cancelled
Content Security Policy 1.1 : script-nonce or script-hash
Re: cspBuilder Wizard
Content Security Policy
Web Developer Security 1.0 - Training Tues 6/18
[webappsec-testsuite] New test server for CSP testing.
- RE: [webappsec-testsuite] New test server for CSP testing.
- Re: [webappsec-testsuite] New test server for CSP testing.
[webappsec] No TPAC meeting in Shenzhen
Fetching contexts
- Re: Fetching contexts
Fwd: webappsec tests moved to GitHub
Agenda for June 4 Teleconference
[Bug 22256] New: Add a note regarding first line of defense.
[webappsec] plugin-types directive for CLSIDs in IE
RE: Cross-domain information leak with UI Security Directives
Specifying nonce-source for every directive
Re: [filter-effects][css-masking] Move security model for resources to CSP
- Re: [filter-effects][css-masking] Move security model for resources to CSP
- Re: [filter-effects][css-masking] Move security model for resources to CSP