Re: [webappsec] Reminder: please send your preferences

On Fri, Oct 4, 2013, at 2:11, Brad Hill wrote:
> This is a request again, for all WG members, to please send your response
> to this simple poll before our call on Tuesday:
> 
> 1: We should close the feature set of CSP 1.1?  Agree / Disagree

Agree.

> 2. We should include the application of 'unsafe-eval' semantics to the
> CSSOM in the core CSP 1.1 feature set? Agree / Disagree

Agree.

> 3. We should include the suborigin sandboxing proposal in the core CSP
> 1.1 feature set? Agree / Disagree

Disagree.
 
> 4. We should include the "Session Origin Security" policy in the core CSP
> 1.1 feature set?  Agree / Disagree

Disagree.

> 5. We should include the "cookie-scope" policy in the core CSP 1.1
> feature set?  Agree / Disagree

Disagree.

> 6. We should make changes to core CSP 1.1 behavior (including possibly
> specifying a new directive about user script) as requested by Bug 23357?
>  Agree / Disagree

Disagree.

-- 
  Odin Hørthe Omdal
  odinho@opera.com

Received on Friday, 4 October 2013 12:13:00 UTC