Weekly github digest (WebAppSec specs)

Issues
------
* w3c/webappsec-subresource-integrity (+0/-0/💬1)
  1 issues received 1 new comments:
  - #84 The algorithm for parsing metadata should be described in more detail (1 by baek9)
    https://github.com/w3c/webappsec-subresource-integrity/issues/84 

* w3c/webappsec-credential-management (+2/-0/💬1)
  2 issues created:
  - update all <a ...> anchors to use bikeshed shortcuts like [= (by equalsJeffH)
    https://github.com/w3c/webappsec-credential-management/issues/180 [editorial] 
  - change all numbered steps in the bikeshed source to be "1." (by equalsJeffH)
    https://github.com/w3c/webappsec-credential-management/issues/179 [editorial] 

  1 issues received 1 new comments:
  - #136 add feature policy support for webauthn (1 by equalsJeffH)
    https://github.com/w3c/webappsec-credential-management/issues/136 [enhancement] 

* w3c/permissions (+1/-2/💬3)
  1 issues created:
  - Interaction between browser and system permissions (by marcoscaceres)
    https://github.com/w3c/permissions/issues/332 

  1 issues received 3 new comments:
  - #329 Ensure "persistent-storage" is integrated into parent spec (3 by marcoscaceres, miketaylr)
    https://github.com/w3c/permissions/issues/329 

  2 issues closed:
  - Ensure "persistent-storage" is integrated into parent spec https://github.com/w3c/permissions/issues/329 
  - Permission lifetimes https://github.com/w3c/permissions/issues/233 

* w3c/webappsec-fetch-metadata (+0/-0/💬10)
  1 issues received 10 new comments:
  - #80 Fetch-Metadata to indicate when the browser is in a partitioned context (10 by annevk, dveditz, krgovind)
    https://github.com/w3c/webappsec-fetch-metadata/issues/80 



Pull requests
-------------
* w3c/webappsec-subresource-integrity (+1/-0/💬0)
  1 pull requests submitted:
  - Edit 3.4.3 Parse metadata in more detail (by baek9)
    https://github.com/w3c/webappsec-subresource-integrity/pull/110 

* w3c/webappsec-csp (+0/-0/💬3)
  1 pull requests received 3 new comments:
  - #533 Add ['wss', 'ws'] in "Strip URLs for use in reports" allow-list. (3 by ArthurSonzogni, annevk)
    https://github.com/w3c/webappsec-csp/pull/533 

* w3c/webappsec-credential-management (+1/-0/💬0)
  1 pull requests submitted:
  - Map options member identifiers and credential types (by equalsJeffH)
    https://github.com/w3c/webappsec-credential-management/pull/181 

* w3c/permissions (+1/-3/💬5)
  1 pull requests submitted:
  - Editorial: relocate "persistent-storage" powerful feature (by miketaylr)
    https://github.com/w3c/permissions/pull/333 

  4 pull requests received 5 new comments:
  - #325 Editorial: Add 'getting the current permission state' steps (2 by jyasskin, marcoscaceres)
    https://github.com/w3c/permissions/pull/325 
  - #287 Define permission lifetimes (1 by marcoscaceres)
    https://github.com/w3c/permissions/pull/287 
  - #264 Editorial: Relationship to the Permissions Policy specification (1 by clelland)
    https://github.com/w3c/permissions/pull/264 
  - #196 Direct Connection Permission (1 by marcoscaceres)
    https://github.com/w3c/permissions/pull/196 

  3 pull requests merged:
  - Editorial: relocate "persistent-storage" powerful feature
    https://github.com/w3c/permissions/pull/333 
  - Editorial: link <a>express permission</a> inside <a>request permission to use</a>.
    https://github.com/w3c/permissions/pull/331 
  - Define permission lifetimes
    https://github.com/w3c/permissions/pull/287 


Repositories tracked by this digest:
-----------------------------------
* https://github.com/w3c/webappsec
* https://github.com/w3c/webappsec-subresource-integrity
* https://github.com/w3c/webappsec-csp
* https://github.com/w3c/webappsec-mixed-content
* https://github.com/w3c/webappsec-upgrade-insecure-requests
* https://github.com/w3c/webappsec-credential-management
* https://github.com/w3c/permissions
* https://github.com/w3c/webappsec-referrer-policy
* https://github.com/w3c/webappsec-secure-contexts
* https://github.com/w3c/webappsec-clear-site-data
* https://github.com/w3c/webappsec-cowl
* https://github.com/w3c/webappsec-epr
* https://github.com/w3c/webappsec-suborigins
* https://github.com/w3c/webappsec-cspee
* https://github.com/w3c/webappsec-permissions-policy
* https://github.com/w3c/webappsec-fetch-metadata
* https://github.com/w3c/webappsec-trusted-types
* https://github.com/w3c/webappsec-change-password-url
* https://github.com/w3c/webappsec-post-spectre-webdev


-- 
Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config

Received on Monday, 29 November 2021 17:00:41 UTC