CORS and wildcards.
[webappsec] Minutes from 26-Feb teleconference available
[webappsec] Agenda for 25-March-2013 Teleconference
[webappsec] new draft of UI Security available
Fwd: minor typo in CORS spec section 6.2?
"form-action" status.
"source-file" vs "source-url"
Include page http response code in CSP reports?
CSP: set of report URIs
SecurityPolicyViolation DOM events.
[webappsec] FW: security model of Web Components, etc. - joint work with WebAppSec?
Nonces/hashes in source expressions.
- RE: Nonces/hashes in source expressions.
Re: Heads up: proposal moving test repos to GitHub
CSP 1.0 copy&paste error
please register for April face-to-face meeting
CSP - matching a URI against a source expression with no scheme
CSP: URLs
CSP: error handling
[webappsec] Joel Weinberger's thesis on Analysis and Enforcement of Web Application Security Policies
security model of Web Components, etc. - joint work with WebAppSec?
- Re: security model of Web Components, etc. - joint work with WebAppSec?
[webappsec] updated test VM available
[webappsec] WG survey results
Certificate Revocation in Java
Re: ISSUE-38: Discuss no-mixed-content directive
Re: Blank blocked-uris
Re: [webappsec] Proposed text for jsonp directives
About script-nonce
webappsec-ISSUE-45 ('top-only'): Is 'top-only' worth preserving? [UI Security]
- Re: webappsec-ISSUE-45 ('top-only'): Is 'top-only' worth preserving? [UI Security]
- Re: webappsec-ISSUE-45 ('top-only'): Is 'top-only' worth preserving? [UI Security]
- Re: webappsec-ISSUE-45 ('top-only'): Is 'top-only' worth preserving? [UI Security]
- Re: webappsec-ISSUE-45 ('top-only'): Is 'top-only' worth preserving? [UI Security]
- Re: webappsec-ISSUE-45 ('top-only'): Is 'top-only' worth preserving? [UI Security]
- Re: webappsec-ISSUE-45 ('top-only'): Is 'top-only' worth preserving? [UI Security]
- RE: webappsec-ISSUE-45 ('top-only'): Is 'top-only' worth preserving? [UI Security]
- Re: webappsec-ISSUE-45 ('top-only'): Is 'top-only' worth preserving? [UI Security]
- RE: webappsec-ISSUE-45 ('top-only'): Is 'top-only' worth preserving? [UI Security]
- Re: webappsec-ISSUE-45 ('top-only'): Is 'top-only' worth preserving? [UI Security]
- RE: webappsec-ISSUE-45 ('top-only'): Is 'top-only' worth preserving? [UI Security]
- Re: webappsec-ISSUE-45 ('top-only'): Is 'top-only' worth preserving? [UI Security]
- Re: webappsec-ISSUE-45 ('top-only'): Is 'top-only' worth preserving? [UI Security]
- RE: webappsec-ISSUE-45 ('top-only'): Is 'top-only' worth preserving? [UI Security]
- Re: webappsec-ISSUE-45 ('top-only'): Is 'top-only' worth preserving? [UI Security]
- Re: webappsec-ISSUE-45 ('top-only'): Is 'top-only' worth preserving? [UI Security]
- Re: webappsec-ISSUE-45 ('top-only'): Is 'top-only' worth preserving? [UI Security]
- Re: webappsec-ISSUE-45 ('top-only'): Is 'top-only' worth preserving? [UI Security]