[mixed-content]
[SRI] editorial
[upgrade-insecure-requests]
[webappsec] Agenda for 15-Nov-2015 teleconference
[webappsec] Cancelled 12/30 call
[webappsec] new UISecurity draft for Monday
[webappsec] Poll for new meeting day
call for agenda items for Wednesday's conference call
Call for Exclusions (Update): Clear Site Data
Call for Exclusions: Subresource Integrity
CfC: CSP Cookie Controls to FPWD; deadline Dec. 7th.
CfC: CSP Embedded Enforcement to FPWD; deadline Dec. 7th.
High Resolution Time 2: time origin and worker support
HSTS Priming, continued.
- Anne van Kesteren (Thursday, 12 November)
- David Illsley (Wednesday, 11 November)
- Richard Barnes (Thursday, 12 November)
- Eric Mill (Thursday, 12 November)
- Daniel Kahn Gillmor (Thursday, 12 November)
- Martin Thomson (Thursday, 12 November)
- Richard Barnes (Thursday, 12 November)
- Martin Thomson (Thursday, 12 November)
- Eric Mill (Wednesday, 11 November)
- Eric Mill (Wednesday, 11 November)
- Daniel Kahn Gillmor (Wednesday, 11 November)
- Eric Mill (Wednesday, 11 November)
- Brian Smith (Wednesday, 11 November)
- Brad Hill (Wednesday, 11 November)
- Daniel Kahn Gillmor (Wednesday, 11 November)
- Eric Mill (Wednesday, 11 November)
- Martin Thomson (Wednesday, 11 November)
- Brian Smith (Wednesday, 11 November)
- Crispin Cowan (Wednesday, 11 November)
- Brad Hill (Friday, 6 November)
- Mike West (Friday, 6 November)
- Brad Hill (Friday, 6 November)
- Mike West (Friday, 6 November)
In what circumstances is "delayed execution" acceptable on the web?
- Anne van Kesteren (Friday, 13 November)
- Jake Archibald (Friday, 13 November)
- Jake Archibald (Friday, 13 November)
- Anne van Kesteren (Friday, 13 November)
- Martin Thomson (Friday, 13 November)
- Jeffrey Yasskin (Friday, 13 November)
- Ángel González (Friday, 13 November)
- Wendy Seltzer (Friday, 13 November)
- Daniel Kahn Gillmor (Thursday, 12 November)
- Jeffrey Yasskin (Thursday, 12 November)
- Martin Thomson (Thursday, 12 November)
- Jake Archibald (Thursday, 12 November)
- Daniel Kahn Gillmor (Wednesday, 11 November)
- Mike O'Neill (Wednesday, 11 November)
- Marijn Kruisselbrink (Wednesday, 11 November)
- Anne van Kesteren (Wednesday, 11 November)
- Jake Archibald (Wednesday, 11 November)
Marking HTTP As Non-Secure
Potential changes to cookies in Chrome.
Proposal: Showing the padlock icon on all secure origins
Proprietary dependencies (was Re: Request for review of the Presentation API from a security perspective)
referrer-policy attribute
Request for review of the Presentation API from a security perspective
Suborigin update
WS/Service Workers, TLS and future apps - [was Re: HTTP is just fine]
Last message date: Monday, 30 November 2015 23:16:21 UTC