Weekly github digest (WebAppSec specs)

Issues
------
* w3c/webappsec-csp (+0/-0/💬4)
  2 issues received 4 new comments:
  - #449 CSP violations triggered by scripts: no 'source-file' or 'script-sample'? (2 by dveditz, ureesoriano)
    https://github.com/w3c/webappsec-csp/issues/449 
  - #256 Add way to define all country code top-level domain. (2 by koto, lukos)
    https://github.com/w3c/webappsec-csp/issues/256 

* w3c/webappsec-mixed-content (+0/-1/💬0)
  1 issues closed:
  - "a priori authenticated URL"  is now equivalent to "potentially trustworthy URL" https://github.com/w3c/webappsec-mixed-content/issues/35 

* w3c/permissions (+2/-0/💬2)
  2 issues created:
  - PWA install permission (by FluorescentHallucinogen)
    https://github.com/w3c/permissions/issues/227 
  - [question] permission scope (by akosyakov)
    https://github.com/w3c/permissions/issues/226 

  1 issues received 2 new comments:
  - #227 PWA install permission (2 by mgiuca, rniwa)
    https://github.com/w3c/permissions/issues/227 

* w3c/webappsec-permissions-policy (+1/-1/💬6)
  1 issues created:
  - Support for disabled by default features? (by acomminos)
    https://github.com/w3c/webappsec-permissions-policy/issues/412 

  3 issues received 6 new comments:
  - #412 Support for disabled by default features? (1 by annevk)
    https://github.com/w3c/webappsec-permissions-policy/issues/412 
  - #411 Move Document Policy (3 by clelland)
    https://github.com/w3c/webappsec-permissions-policy/issues/411 
  - #173 Need to define behaviour of features in associated browsing contexts (2 by annevk, clelland)
    https://github.com/w3c/webappsec-permissions-policy/issues/173 [definition] 

  1 issues closed:
  - Need to define behaviour of features in associated browsing contexts https://github.com/w3c/webappsec-permissions-policy/issues/173 [definition] 

* w3c/webappsec-trusted-types (+0/-1/💬0)
  1 issues closed:
  - Add a target suitable for nodejs. https://github.com/w3c/webappsec-trusted-types/issues/190 [polyfill] 



Pull requests
-------------
* w3c/webappsec (+1/-1/💬0)
  1 pull requests submitted:
  - Propose adding document policy to 2020-11-17 agenda (by clelland)
    https://github.com/w3c/webappsec/pull/570 

  1 pull requests merged:
  - Propose adding document policy to 2020-11-17 agenda
    https://github.com/w3c/webappsec/pull/570 

* w3c/webappsec-mixed-content (+1/-1/💬1)
  1 pull requests submitted:
  - Remove a priori authenticated concept from MIX2 (by carlosjoan91)
    https://github.com/w3c/webappsec-mixed-content/pull/36 

  1 pull requests received 1 new comments:
  - #36 Remove a priori authenticated concept from MIX2 (1 by carlosjoan91)
    https://github.com/w3c/webappsec-mixed-content/pull/36 

  1 pull requests merged:
  - Remove a priori authenticated concept from MIX2
    https://github.com/w3c/webappsec-mixed-content/pull/36 

* w3c/webappsec-referrer-policy (+0/-1/💬3)
  1 pull requests received 3 new comments:
  - #142 Make strict-origin-when-cross-origin the default referrer policy (3 by domfarolino, krgovind)
    https://github.com/w3c/webappsec-referrer-policy/pull/142 

  1 pull requests merged:
  - Make strict-origin-when-cross-origin the default referrer policy
    https://github.com/w3c/webappsec-referrer-policy/pull/142 

* w3c/webappsec-trusted-types (+0/-1/💬4)
  1 pull requests received 4 new comments:
  - #299 Using TT polyfill in nodejs environment (4 by Siegrift, koto)
    https://github.com/w3c/webappsec-trusted-types/pull/299 

  1 pull requests merged:
  - Using TT polyfill in nodejs environment
    https://github.com/w3c/webappsec-trusted-types/pull/299 


Repositories tracked by this digest:
-----------------------------------
* https://github.com/w3c/webappsec
* https://github.com/w3c/webappsec-subresource-integrity
* https://github.com/w3c/webappsec-csp
* https://github.com/w3c/webappsec-mixed-content
* https://github.com/w3c/webappsec-upgrade-insecure-requests
* https://github.com/w3c/webappsec-credential-management
* https://github.com/w3c/permissions
* https://github.com/w3c/webappsec-referrer-policy
* https://github.com/w3c/webappsec-secure-contexts
* https://github.com/w3c/webappsec-clear-site-data
* https://github.com/w3c/webappsec-cowl
* https://github.com/w3c/webappsec-epr
* https://github.com/w3c/webappsec-suborigins
* https://github.com/w3c/webappsec-cspee
* https://github.com/w3c/webappsec-permissions-policy
* https://github.com/w3c/webappsec-fetch-metadata
* https://github.com/w3c/webappsec-trusted-types
* https://github.com/w3c/webappsec-change-password-url
* https://github.com/w3c/webappsec-unofficial-drafts


-- 
Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config

Received on Monday, 23 November 2020 17:00:50 UTC