Isolated Origins

On the last call, I mentioned that I would send out an "Isolate-Me" draft.
This is a proposal for a mechanism by which an origin can opt in to isolate
itself from other web content -- probably most useful for high-value
security-critical applications that are willing to give up some
functionality for such isolation.

Please take a look at this faint ghost of a spec that aims to explain the
threat model more and nail down what these isolation mechanisms are:
https://wicg.github.io/isolation/index.html

Any comments or feedback, either here or in the GitHub repo, would be very
welcome.

David Ross (cc'ed) might also want to share some thinking he's done about
alternative shapes for the part of the proposal that deals with navigation
restrictions.

Thanks!
Emily

Received on Tuesday, 25 April 2017 21:53:24 UTC