[Bug 23654] New: Point out that Access-Control-Allow-Origin:* is safe for servers not behind a firewall

https://www.w3.org/Bugs/Public/show_bug.cgi?id=23654

            Bug ID: 23654
           Summary: Point out that Access-Control-Allow-Origin:* is safe
                    for servers not behind a firewall
           Product: WHATWG
           Version: unspecified
          Hardware: PC
                OS: Windows 3.1
            Status: NEW
          Severity: normal
          Priority: P2
         Component: Fetch
          Assignee: annevk@annevk.nl
          Reporter: annevk@annevk.nl
        QA Contact: sideshowbarker+fetchspec@gmail.com
                CC: hillbrad@gmail.com, mike@w3.org,
                    public-webappsec@w3.org

+++ This bug was initially created as a clone of Bug #14700 +++

In the eventual "How to use CORS" section point out that you can use
Access-Control-Allow-Origin:* safely on servers not behind a firewall.

-- 
You are receiving this mail because:
You are on the CC list for the bug.

Received on Monday, 28 October 2013 14:20:05 UTC