Thursday, 31 July 2014
- Re: [REFERRER] Where does "Determine request’s Referrer" get its URL from?
- Re: [REFERRER] Where does "Determine request’s Referrer" get its URL from?
Wednesday, 30 July 2014
- Re: [REFERRER] Where does "Determine request’s Referrer" get its URL from?
- Re: [webappsec] 30-July WebAppSec Teleconference CANCELLED
- Re: [webappsec] 30-July WebAppSec Teleconference CANCELLED
- Re: [REFERRER] Where does "Determine request’s Referrer" get its URL from?
- Re: [webappsec] 30-July WebAppSec Teleconference CANCELLED
Tuesday, 29 July 2014
- Re: SRI: <a> vs integrity
- Re: SRI: <a> vs integrity
- Re: [REFERRER] Where does "Determine request’s Referrer" get its URL from?
- [webappsec] 30-July WebAppSec Teleconference CANCELLED
- Re: [CSP] Directive to disallow a response from being used as a Service Worker
- Re: [CSP] Directive to disallow a response from being used as a Service Worker
- Re: [CSP] Directive to disallow a response from being used as a Service Worker
- Re: [CSP] Directive to disallow a response from being used as a Service Worker
- Re: [CSP] Directive to disallow a response from being used as a Service Worker
- Re: [REFERRER] Where does "Determine request’s Referrer" get its URL from?
- Re: SRI: <a> vs integrity
- Re: SRI: <a> vs integrity
- Re: SRI: <a> vs integrity
Monday, 28 July 2014
- Re: SRI: <a> vs integrity
- Re: [REFERRER] Where does "Determine request’s Referrer" get its URL from?
- Re: SRI: <a> vs integrity
- Re: SRI: <a> vs integrity
- Re: [REFERRER] Where does "Determine request’s Referrer" get its URL from?
- Re: img-src and inline <svg>
- Re: img-src and inline <svg>
- Re: SRI: <a> vs integrity
Sunday, 27 July 2014
- Re: [CSP] Directive to disallow a response from being used as a Service Worker
- Re: [CSP] Directive to disallow a response from being used as a Service Worker
- Re: SRI and CORS
- SRI: <a> vs integrity
- Re: img-src and inline <svg>
- Re: img-src and inline <svg>
Saturday, 26 July 2014
Friday, 25 July 2014
- img-src and inline <svg>
- Re: [REFERRER] Where does "Determine request’s Referrer" get its URL from?
- Re: [REFERRER] Where does "Determine request’s Referrer" get its URL from?
Thursday, 24 July 2014
- Re: [CSP] Directive to disallow a response from being used as a Service Worker
- Re: [CSP] Directive to disallow a response from being used as a Service Worker
- Re: [REFERRER] Where does "Determine request’s Referrer" get its URL from?
- Re: [CSP] Directive to disallow a response from being used as a Service Worker
- Re: [CSP] Directive to disallow a response from being used as a Service Worker
- Re: [REFERRER] Where does "Determine request's Referrer" get its URL from?
- Re: [CSP] Directive to disallow a response from being used as a Service Worker
- Re: [REFERRER] Where does "Determine request’s Referrer" get its URL from?
- Re: [CSP] Directive to disallow a response from being used as a Service Worker
Wednesday, 23 July 2014
- [REFERRER] Where does "Determine request’s Referrer" get its URL from?
- "Why is CSP failing? Trends and Challenges in CSP Adoption"
Tuesday, 22 July 2014
- Re: [MIX] Consider all CORS requests "active"
- Re: [CSP] Directive to disallow a response from being used as a Service Worker
- Re: [Integrity] Signature based subresource integrity?
- Re: [Integrity] Signature based subresource integrity?
- [Integrity] HTTP/1.1 reference
- Re: CfC to publish FPWD on Referrer Policy.
- Re: [MIX] Consider all CORS requests "active"
- Re: [MIX] Consider all CORS requests "active"
- Re: [CSP] Directive to disallow a response from being used as a Service Worker
- Re: [MIX] Consider all CORS requests "active"
- Re: [Integrity] Signature based subresource integrity?
Monday, 21 July 2014
Tuesday, 22 July 2014
- Re: [MIX] Consider all CORS requests "active"
- Re: [MIX] Consider all CORS requests "active"
- Re: [CSP] Directive to disallow a response from being used as a Service Worker
Monday, 21 July 2014
- Re: [CSP] Directive to disallow a response from being used as a Service Worker
- [CSP] Directive to disallow a response from being used as a Service Worker
- Re: CfC to publish FPWD on Referrer Policy.
- CfC to publish FPWD on Referrer Policy.
- Re: SRI and CORS
Thursday, 17 July 2014
Wednesday, 16 July 2014
- Re: CORS and CSRF protection
- Re: CORS and CSRF protection
- Re: [CSP] Rule referencing
- Re: [CSP] Rule referencing
- [CSP] Rule referencing
- Re: CORS and CSRF protection
- Re: SRI and CORS
- WebAppSec WG Teleconference 16-July-2014 08:00 PDT
- Re: [CSP] Request to amend bookmarklet/extensions sentence in CSP1.1
Tuesday, 15 July 2014
- [webappsec] tomorrow's call
- Re: CSP declarations in html meta tags
- Re: [blink-dev] Proposal: Prefer secure origins for powerful new web platform features
- Re: Proposal: Prefer secure origins for powerful new web platform features
- Re: [Bulk] Proposal: Prefer secure origins for powerful new web platform features
- Re: [CSP] Request to amend bookmarklet/extensions sentence in CSP1.1
- Resource integrity transparency
- [CSP] Request to amend bookmarklet/extensions sentence in CSP1.1
Friday, 11 July 2014
Sunday, 13 July 2014
Friday, 11 July 2014
- Re: CSP declarations in html meta tags
- CSP declarations in html meta tags
- Re: [MIX] Consider all CORS requests "active"
- Re: [MIX] Consider all CORS requests "active"
- Re: [MIX] Consider all CORS requests "active"
Thursday, 10 July 2014
- Re: [MIX] Consider all CORS requests "active"
- Re: [MIX] Consider all CORS requests "active"
- Re: [MIX] Consider all CORS requests "active"
- [MIX] Consider all CORS requests "active"
Monday, 7 July 2014
- Re: CSP: 'no-external-navigation'?
- Re: CSP: 'no-external-navigation'?
- Call for Exclusions: Content Security Policy Level 2
- Re: CSP: 'no-external-navigation'?
- Re: CSP: 'no-external-navigation'?
Friday, 4 July 2014
Thursday, 3 July 2014
- RE: Mixed Content Spec feedback
- Mixed Content ED Comments
- Re: [SRI] What should we Hash Redux
- Re: [SRI] What should we Hash Redux
- Re: [SRI] What should we Hash Redux
- Re: [SRI] What should we Hash Redux
- Re: SRI and CORS
- Re: SRI and CORS
- Re: SRI and CORS
- Re: SRI and CORS
- Re: SRI and CORS
- Re: SRI and CORS
- Re: SRI and CORS
- Re: SRI and CORS
- Re: SRI and CORS
- Re: SRI and CORS
- Re: SRI and CORS
- Re: SRI and CORS
- Re: [SRI] What should we Hash Redux
- SRI and CORS
- Re: [MIX] blob URLs
- Re: [MIX] blob URLs
- Re: CSP 1.1 frameancestors and blobs
- Re: CSP 1.1 frameancestors and blobs
- Re: CSP 1.1 frameancestors and blobs
Wednesday, 2 July 2014
- [SRI] What should we Hash Redux
- Re: [MIX]: Can we distinguish between images loader via `<picture>`/`srcset` and `<img>`?
- Re: [MIX]: Can we distinguish between images loader via `<picture>`/`srcset` and `<img>`?
- Re: Mixed Content Spec feedback
- Re: PFWG comments on User Interface Security Directives for Content Security Policy
- Re: PFWG comments on User Interface Security Directives for Content Security Policy
- Re: Mixed Content Spec feedback
- Re: Mixed Content Spec feedback
- Mixed Content Spec feedback
Tuesday, 1 July 2014
- Re: [MIX]: Can we distinguish between images loader via `<picture>`/`srcset` and `<img>`?
- WebAppSec WG Teleconference 02-July-2014 08:00 PDT
- Re: Isolated Web Components for a more secure web
- Re: CSP wildcard host matching
- Re: CSP wildcard host matching
- Re: CSP wildcard host matching
- Re: Isolated Web Components for a more secure web
- Re: Isolated Web Components for a more secure web