Weekly github digest (WebAppSec specs)

Issues
------
* w3c/webappsec-csp (+1/-1/💬3)
  1 issues created:
  - Content-Security-Policy header isn't registered (by mnot)
    https://github.com/w3c/webappsec-csp/issues/514 

  3 issues received 3 new comments:
  - #512 unsafe-eval and WebAssembly (1 by fgmccabe)
    https://github.com/w3c/webappsec-csp/issues/512 
  - #191 Add keyword to prevent parser-based JS APIs from adding new scripts  (1 by Jamesernator)
    https://github.com/w3c/webappsec-csp/issues/191 
  - #8 CSP: form-action and redirects (1 by jub0bs)
    https://github.com/w3c/webappsec-csp/issues/8 [CSP] 

  1 issues closed:
  - unsafe-eval and WebAssembly https://github.com/w3c/webappsec-csp/issues/512 

* w3c/webappsec-mixed-content (+0/-3/💬4)
  3 issues received 4 new comments:
  - #58 References to [mixed-content] don't point to the level 1 spec (1 by sideshowbarker)
    https://github.com/w3c/webappsec-mixed-content/issues/58 
  - #28 Level 2 story for <form> (2 by carlosjoan91, sideshowbarker)
    https://github.com/w3c/webappsec-mixed-content/issues/28 
  - #25 Move MIX2 to FPWD (1 by sideshowbarker)
    https://github.com/w3c/webappsec-mixed-content/issues/25 

  3 issues closed:
  - References to [mixed-content] don't point to the level 1 spec https://github.com/w3c/webappsec-mixed-content/issues/58 
  - Level 2 story for <form> https://github.com/w3c/webappsec-mixed-content/issues/28 
  - Move MIX2 to FPWD https://github.com/w3c/webappsec-mixed-content/issues/25 

* w3c/permissions (+1/-0/💬2)
  1 issues created:
  - "notifications", (by miketaylr)
    https://github.com/w3c/permissions/issues/291 

  2 issues received 2 new comments:
  - #263 Move permissions out to each spec (1 by marcoscaceres)
    https://github.com/w3c/permissions/issues/263 
  - #49 Add UX considerations section (1 by miketaylr)
    https://github.com/w3c/permissions/issues/49 [Actionable] 

* w3c/webappsec-clear-site-data (+0/-0/💬3)
  1 issues received 3 new comments:
  - #64 Clear-Site-Data and sandboxing (3 by annevk, jakearchibald)
    https://github.com/w3c/webappsec-clear-site-data/issues/64 



Pull requests
-------------
* w3c/webappsec (+1/-0/💬1)
  1 pull requests submitted:
  - Update index.html (by cqueern)
    https://github.com/w3c/webappsec/pull/605 

  1 pull requests received 1 new comments:
  - #605 Update index.html (1 by annevk)
    https://github.com/w3c/webappsec/pull/605 

* w3c/webappsec-csp (+2/-1/💬1)
  2 pull requests submitted:
  - Fix violation's resource for eval violations (by antosart)
    https://github.com/w3c/webappsec-csp/pull/515 
  - [CSP] Remove misleading comment about workers (by antosart)
    https://github.com/w3c/webappsec-csp/pull/513 

  1 pull requests received 1 new comments:
  - #513 [CSP] Remove outdated comment about workers (1 by antosart)
    https://github.com/w3c/webappsec-csp/pull/513 

  1 pull requests merged:
  - [CSP] Remove outdated comment about workers
    https://github.com/w3c/webappsec-csp/pull/513 

* w3c/webappsec-mixed-content (+0/-2/💬0)
  2 pull requests merged:
  - Update title and prose to match CRD living-standard nature
    https://github.com/w3c/webappsec-mixed-content/pull/57 
  - Update the Version History URL
    https://github.com/w3c/webappsec-mixed-content/pull/56 


Repositories tracked by this digest:
-----------------------------------
* https://github.com/w3c/webappsec
* https://github.com/w3c/webappsec-subresource-integrity
* https://github.com/w3c/webappsec-csp
* https://github.com/w3c/webappsec-mixed-content
* https://github.com/w3c/webappsec-upgrade-insecure-requests
* https://github.com/w3c/webappsec-credential-management
* https://github.com/w3c/permissions
* https://github.com/w3c/webappsec-referrer-policy
* https://github.com/w3c/webappsec-secure-contexts
* https://github.com/w3c/webappsec-clear-site-data
* https://github.com/w3c/webappsec-cowl
* https://github.com/w3c/webappsec-epr
* https://github.com/w3c/webappsec-suborigins
* https://github.com/w3c/webappsec-cspee
* https://github.com/w3c/webappsec-permissions-policy
* https://github.com/w3c/webappsec-fetch-metadata
* https://github.com/w3c/webappsec-trusted-types
* https://github.com/w3c/webappsec-change-password-url
* https://github.com/w3c/webappsec-post-spectre-webdev


-- 
Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config

Received on Monday, 4 October 2021 17:00:42 UTC