- From: W3C Webmaster via GitHub API <sysbot+gh@w3.org>
- Date: Mon, 19 Nov 2018 17:00:18 +0000
- To: public-webappsec@w3.org
- Message-Id: <E1gOmuI-0004wZ-SV@uranus.w3.org>
Issues ------ * w3c/webappsec (+1/-0/💬0) 1 issues created: - Distrusting the web server (by leo-lb) https://github.com/w3c/webappsec/issues/538 * w3c/webappsec-subresource-integrity (+0/-0/💬3) 1 issues received 3 new comments: - #20 Consider integrity check violation reporting (3 by ScottHelme, rcbarnett, devd) https://github.com/w3c/webappsec-subresource-integrity/issues/20 * w3c/webappsec-csp (+2/-1/💬12) 2 issues created: - Broken references in "Integration with Fetch" section (by bzbarsky) https://github.com/w3c/webappsec-csp/issues/367 - Bug in directive-value grammar (by shekyan) https://github.com/w3c/webappsec-csp/issues/366 3 issues received 12 new comments: - #366 Bug in directive-value grammar (8 by mikewest, shekyan, michaelficarra) https://github.com/w3c/webappsec-csp/issues/366 - #361 CSP 3 draft does not conform to the HTTP/1.1 standard for headers (3 by mikewest, markushausammann) https://github.com/w3c/webappsec-csp/issues/361 - #203 worklet-src directive needed for worklets? (1 by dav-is) https://github.com/w3c/webappsec-csp/issues/203 1 issues closed: - Using active document of a browsing context introduces a security vulnerability https://github.com/w3c/webappsec-csp/issues/360 Pull requests ------------- * w3c/webappsec-csp (+0/-1/💬13) 1 pull requests received 13 new comments: - #363 Specify behavior in case of malformed policies (13 by andypaicu, mikewest, shekyan, michaelficarra) https://github.com/w3c/webappsec-csp/pull/363 1 pull requests merged: - Use request's client instead of the source browsing context to get a navigation initiator's CSP list https://github.com/w3c/webappsec-csp/pull/365 Repositories tracked by this digest: ----------------------------------- * https://github.com/w3c/webappsec * https://github.com/w3c/webappsec-subresource-integrity * https://github.com/w3c/webappsec-csp * https://github.com/w3c/webappsec-mixed-content * https://github.com/w3c/webappsec-upgrade-insecure-requests * https://github.com/w3c/webappsec-credential-management * https://github.com/w3c/permissions * https://github.com/w3c/webappsec-referrer-policy * https://github.com/w3c/webappsec-secure-contexts * https://github.com/w3c/webappsec-clear-site-data * https://github.com/w3c/webappsec-cowl * https://github.com/w3c/webappsec-epr * https://github.com/w3c/webappsec-suborigins * https://github.com/w3c/webappsec-cspee
Received on Monday, 19 November 2018 17:00:22 UTC