[webappsec] CfC: Proposed non-normative updates to CORS
UPGRADE: 'HTTPS' header causing compatibility issues.
- Re: UPGRADE: 'HTTPS' header causing compatibility issues.
- Re: UPGRADE: 'HTTPS' header causing compatibility issues.
- Re: UPGRADE: 'HTTPS' header causing compatibility issues.
- Re: UPGRADE: 'HTTPS' header causing compatibility issues.
- Re: UPGRADE: 'HTTPS' header causing compatibility issues.
- Re: UPGRADE: 'HTTPS' header causing compatibility issues.
- Re: UPGRADE: 'HTTPS' header causing compatibility issues.
- Re: UPGRADE: 'HTTPS' header causing compatibility issues.
- Re: UPGRADE: 'HTTPS' header causing compatibility issues.
- Re: UPGRADE: 'HTTPS' header causing compatibility issues.
- Re: UPGRADE: 'HTTPS' header causing compatibility issues.
- Re: UPGRADE: 'HTTPS' header causing compatibility issues.
- Re: UPGRADE: 'HTTPS' header causing compatibility issues.
- Re: UPGRADE: 'HTTPS' header causing compatibility issues.
- Re: UPGRADE: 'HTTPS' header causing compatibility issues.
- Re: UPGRADE: 'HTTPS' header causing compatibility issues.
- Re: UPGRADE: 'HTTPS' header causing compatibility issues.
Post-Zakim calls? (Re: [webappsec] Teleconference Agenda 29-Jun)
- Re: Post-Zakim calls? (Re: [webappsec] Teleconference Agenda 29-Jun)
[Bug 28861] New: Section 6.2 Preflight Request, step 10, second note: "Access-Control-Allow-Headers" instead of "Access-Control-Request-Headers"
[webappsec] Teleconference Agenda 29-Jun
Is secure context enough of a guarantee?
[credential-management] initial feedback
Berlin F2F Participation
CfC: Mixed Content to PR; deadline July 6th.
- Re: CfC: Mixed Content to PR; deadline July 6th.
- Re: CfC: Mixed Content to PR; deadline July 6th.
Re: some brief comments on mixedcontent
[webappsec] TPAC registration is open!
SRI: Shipped on tip-of-tree Chromium
[webappsec] Reminder: Berlin F2F July 13-14
[upgrade-insecure-requests] Strict-Transport-Security only for HTML document or any type files?
Re: F2F Meeting?
[REFERRER] updating referrer policy and request caching
[webappsec] Teleconference Agenda 15-June-2015 12:00 PDT
Proposal: a "clear site data" API.
- Re: Proposal: a "clear site data" API.
- Re: Proposal: a "clear site data" API.
- Re: Proposal: a "clear site data" API.
- Re: Proposal: a "clear site data" API.
- Re: Proposal: a "clear site data" API.
- Re: Proposal: a "clear site data" API.
- Re: Proposal: a "clear site data" API.
- Re: Proposal: a "clear site data" API.
SRI: Behavior when a developer fails to specify CORS
Every example fails
Call for Exclusions: Entry Point Regulation
Re: CORS performance proposal
CSP unsafe-inline DOM access
Re: [credential management] Cross-origin credentials (was: Identity Credentials API Extension)
Re: [credential management] Identity Credentials API Extension
- Re: [credential management] Identity Credentials API Extension
- Re: [credential management] Identity Credentials API Extension