W3C home > Mailing lists > Public > public-webappsec@w3.org > October 2013

Re: [webappsec] Reminder: please send your preferences

From: Odin Hørthe Omdal <odinho@opera.com>
Date: Fri, 04 Oct 2013 14:12:37 +0200
Message-Id: <1380888757.3181.29953089.677E11C8@webmail.messagingengine.com>
To: public-webappsec@w3.org
On Fri, Oct 4, 2013, at 2:11, Brad Hill wrote:
> This is a request again, for all WG members, to please send your response
> to this simple poll before our call on Tuesday:
> 
> 1: We should close the feature set of CSP 1.1?  Agree / Disagree

Agree.

> 2. We should include the application of 'unsafe-eval' semantics to the
> CSSOM in the core CSP 1.1 feature set? Agree / Disagree

Agree.

> 3. We should include the suborigin sandboxing proposal in the core CSP
> 1.1 feature set? Agree / Disagree

Disagree.
 
> 4. We should include the "Session Origin Security" policy in the core CSP
> 1.1 feature set?  Agree / Disagree

Disagree.

> 5. We should include the "cookie-scope" policy in the core CSP 1.1
> feature set?  Agree / Disagree

Disagree.

> 6. We should make changes to core CSP 1.1 behavior (including possibly
> specifying a new directive about user script) as requested by Bug 23357?
>  Agree / Disagree

Disagree.

-- 
  Odin Hørthe Omdal
  odinho@opera.com
Received on Friday, 4 October 2013 12:13:00 UTC

This archive was generated by hypermail 2.3.1 : Monday, 23 October 2017 14:54:03 UTC