Weekly github digest (WebAppSec specs)

Issues
------
* w3c/webappsec (+1/-0/💬7)
  1 issues created:
  - Process 2020 (by marcoscaceres)
    https://github.com/w3c/webappsec/issues/599 

  1 issues received 7 new comments:
  - #599 Which process version is the WG using? (7 by marcoscaceres, mikewest, wseltzer)
    https://github.com/w3c/webappsec/issues/599 [question] 

* w3c/webappsec-subresource-integrity (+0/-0/💬1)
  1 issues received 1 new comments:
  - #102 Add recommendation to use SRI for versioned & stable resources (1 by mozfreddyb)
    https://github.com/w3c/webappsec-subresource-integrity/issues/102 

* w3c/permissions (+2/-5/💬10)
  2 issues created:
  - Move permissions out to each spec (by marcoscaceres)
    https://github.com/w3c/permissions/issues/263 
  - CFC: Move automation to a Note? (by marcoscaceres)
    https://github.com/w3c/permissions/issues/258 

  6 issues received 10 new comments:
  - #221 Write a Security Considerations section (1 by marcoscaceres)
    https://github.com/w3c/permissions/issues/221 
  - #198 "Changes to this document may be tracked at" points to incorrect repo ? (1 by marcoscaceres)
    https://github.com/w3c/permissions/issues/198 [editorial] 
  - #173 Possibly add 'vibration' to Permission Registry Enum? (1 by marcoscaceres)
    https://github.com/w3c/permissions/issues/173 [new enum value] 
  - #170 PermissionStatus's memory management is unclear (2 by marcoscaceres, smaug----)
    https://github.com/w3c/permissions/issues/170 
  - #165 A new permission for canvas data (1 by marcoscaceres)
    https://github.com/w3c/permissions/issues/165 
  - #162 Handle non-fully-active documents (4 by fergald, marcoscaceres, rakina)
    https://github.com/w3c/permissions/issues/162 

  5 issues closed:
  - "prompt the user to choose" algorithm impedance mismatch. https://github.com/w3c/permissions/issues/161 
  - Remove "device-info" permission https://github.com/w3c/permissions/issues/203 
  - A new permission for canvas data https://github.com/w3c/permissions/issues/165 
  - Write a Security Considerations section https://github.com/w3c/permissions/issues/221 
  - Possibly add 'vibration' to Permission Registry Enum? https://github.com/w3c/permissions/issues/173 [new enum value] 

* w3c/webappsec-fetch-metadata (+1/-0/💬3)
  1 issues created:
  - Sec-Fetch-Site for navigations from outside the browser (by dveditz)
    https://github.com/w3c/webappsec-fetch-metadata/issues/77 

  1 issues received 3 new comments:
  - #77 Sec-Fetch-Site for navigations from outside the browser (3 by annevk, arturjanc)
    https://github.com/w3c/webappsec-fetch-metadata/issues/77 

* w3c/webappsec-trusted-types (+0/-0/💬1)
  1 issues received 1 new comments:
  - #347 Create [TrustedTypes].fromLiteral method (1 by shhnjk)
    https://github.com/w3c/webappsec-trusted-types/issues/347 



Pull requests
-------------
* w3c/webappsec-csp (+1/-1/💬0)
  1 pull requests submitted:
  - Enforce build success in github actions (by antosart)
    https://github.com/w3c/webappsec-csp/pull/507 

  1 pull requests merged:
  - Enforce build success in github actions
    https://github.com/w3c/webappsec-csp/pull/507 

* w3c/permissions (+9/-2/💬8)
  9 pull requests submitted:
  - Editorial: Relationship to the Permissions Policy specification (by marcoscaceres)
    https://github.com/w3c/permissions/pull/264 
  - Editorial: s/boolean/default permission query algorithm (by marcoscaceres)
    https://github.com/w3c/permissions/pull/262 
  - Midi secure (by marcoscaceres)
    https://github.com/w3c/permissions/pull/261 
  - Geolocation is secure context only (by marcoscaceres)
    https://github.com/w3c/permissions/pull/260 
  - Editorial: mark various permissions at risk (by marcoscaceres)
    https://github.com/w3c/permissions/pull/259 
  - Remove 'speaker-selection' enum value, as it's not implemented? (by marcoscaceres)
    https://github.com/w3c/permissions/pull/257 
  - Add garbage collection for PermissionStatus (by marcoscaceres)
    https://github.com/w3c/permissions/pull/256 
  - Revert "Add "gamepad" permission (#200)" (by marcoscaceres)
    https://github.com/w3c/permissions/pull/255 
  - Add xr enum value + entry (by marcoscaceres)
    https://github.com/w3c/permissions/pull/254 

  3 pull requests received 8 new comments:
  - #257 Remove 'speaker-selection' enum value, as it's not implemented? (1 by marcoscaceres)
    https://github.com/w3c/permissions/pull/257 
  - #254 Add xr enum value + entry (5 by Manishearth, cabanier, jdashg, marcoscaceres)
    https://github.com/w3c/permissions/pull/254 
  - #253 Remove 'device-info' permission (2 by marcoscaceres, youennf)
    https://github.com/w3c/permissions/pull/253 

  2 pull requests merged:
  - Remove 'device-info' permission
    https://github.com/w3c/permissions/pull/253 
  - Revert "Add "gamepad" permission (#200)"
    https://github.com/w3c/permissions/pull/255 


Repositories tracked by this digest:
-----------------------------------
* https://github.com/w3c/webappsec
* https://github.com/w3c/webappsec-subresource-integrity
* https://github.com/w3c/webappsec-csp
* https://github.com/w3c/webappsec-mixed-content
* https://github.com/w3c/webappsec-upgrade-insecure-requests
* https://github.com/w3c/webappsec-credential-management
* https://github.com/w3c/permissions
* https://github.com/w3c/webappsec-referrer-policy
* https://github.com/w3c/webappsec-secure-contexts
* https://github.com/w3c/webappsec-clear-site-data
* https://github.com/w3c/webappsec-cowl
* https://github.com/w3c/webappsec-epr
* https://github.com/w3c/webappsec-suborigins
* https://github.com/w3c/webappsec-cspee
* https://github.com/w3c/webappsec-permissions-policy
* https://github.com/w3c/webappsec-fetch-metadata
* https://github.com/w3c/webappsec-trusted-types
* https://github.com/w3c/webappsec-change-password-url
* https://github.com/w3c/webappsec-post-spectre-webdev


-- 
Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config

Received on Monday, 2 August 2021 17:00:37 UTC