Weekly github digest (WebAppSec specs)

Issues
------
* w3c/webappsec-csp (+0/-0/💬2)
  2 issues received 2 new comments:
  - #378 Include script hash in CSP report when 'report-sample' is set (1 by gabinkbl)
    https://github.com/w3c/webappsec-csp/issues/378 
  - #282 Allow control over `dns-prefetch` and `preconnect` (1 by ianopolous)
    https://github.com/w3c/webappsec-csp/issues/282 

* w3c/permissions (+1/-4/💬8)
  1 issues created:
  - Provide guidelines or heuristics to prevent fingerprinting in case permission is denied (by youennf)
    https://github.com/w3c/permissions/issues/361 

  5 issues received 8 new comments:
  - #361 Provide guidelines or heuristics to prevent fingerprinting in case permission is denied (2 by KOLANICH, jyasskin)
    https://github.com/w3c/permissions/issues/361 
  - #314 Proposals: Drop "Powerful features registry" and PermissionName enum (1 by marcoscaceres)
    https://github.com/w3c/permissions/issues/314 
  - #266 Definition of PermissionStatus lifetime (1 by marcoscaceres)
    https://github.com/w3c/permissions/issues/266 
  - #210 Add "popups" permission type (2 by annevk, marcoscaceres)
    https://github.com/w3c/permissions/issues/210 [question] 
  - #191 Semantic Permission Bundles (2 by jan-ivar, tomayac)
    https://github.com/w3c/permissions/issues/191 

  4 issues closed:
  - Move permissions out to each spec https://github.com/w3c/permissions/issues/263 
  - Proposals: Drop "Powerful features registry" and PermissionName enum https://github.com/w3c/permissions/issues/314 
  - Ensure "screen-wake-lock" permission is integrated in Screen Wake Lock API (or just remove it?) https://github.com/w3c/permissions/issues/319 
  - Definition of PermissionStatus lifetime https://github.com/w3c/permissions/issues/266 

* w3c/webappsec-permissions-policy (+0/-0/💬8)
  2 issues received 8 new comments:
  - #444 Permissions Policy unload (7 by annevk, fergald, johannhof)
    https://github.com/w3c/webappsec-permissions-policy/issues/444 
  - #401 Permissions Policy JS API (1 by eeeps)
    https://github.com/w3c/webappsec-permissions-policy/issues/401 

* w3c/webappsec-change-password-url (+0/-0/💬1)
  1 issues received 1 new comments:
  - #34 Any follow-up drafts for fully automated password change? (1 by oliverdunk)
    https://github.com/w3c/webappsec-change-password-url/issues/34 



Pull requests
-------------
* w3c/webappsec-csp (+0/-0/💬1)
  1 pull requests received 1 new comments:
  - #457 Introduce 'webrtc' as a simple on/off switch (1 by zenhack)
    https://github.com/w3c/webappsec-csp/pull/457 

* w3c/permissions (+5/-6/💬10)
  5 pull requests submitted:
  - Add requirements for specifying Powerful Features (by marcoscaceres)
    https://github.com/w3c/permissions/pull/362 
  - Simplify CG model (by marcoscaceres)
    https://github.com/w3c/permissions/pull/360 
  - Editorial: generalize statement about PermissionState emum (by marcoscaceres)
    https://github.com/w3c/permissions/pull/359 
  - Tidied up document using tidy-html5 (by github-actions)
    https://github.com/w3c/permissions/pull/358 
  - Editorial: make 'Creating instances' an algorithm (by marcoscaceres)
    https://github.com/w3c/permissions/pull/357 

  5 pull requests received 10 new comments:
  - #362 Add requirements for specifying Powerful Features (3 by marcoscaceres, miketaylr)
    https://github.com/w3c/permissions/pull/362 
  - #360 Simplify GC model (3 by marcoscaceres)
    https://github.com/w3c/permissions/pull/360 
  - #358 Tidied up document using tidy-html5 (1 by w3cbot)
    https://github.com/w3c/permissions/pull/358 
  - #353 Switch PermissionName to DOMString (1 by miketaylr)
    https://github.com/w3c/permissions/pull/353 
  - #346 Editorial: bring back Automated Testing into spec (2 by marcoscaceres, miketaylr)
    https://github.com/w3c/permissions/pull/346 

  6 pull requests merged:
  - Switch PermissionName to DOMString
    https://github.com/w3c/permissions/pull/353 
  - Simplify GC model
    https://github.com/w3c/permissions/pull/360 
  - Editorial: generalize statement about PermissionState emum
    https://github.com/w3c/permissions/pull/359 
  - Editorial: make 'Creating instances' an algorithm
    https://github.com/w3c/permissions/pull/357 
  - Tidied up document using tidy-html5
    https://github.com/w3c/permissions/pull/358 
  - Editorial: clean up Relationship to Permissions Policy
    https://github.com/w3c/permissions/pull/351 

* w3c/webappsec-permissions-policy (+1/-0/💬3)
  1 pull requests submitted:
  - Add browsing-topics to experimental features list (by freddieleeman)
    https://github.com/w3c/webappsec-permissions-policy/pull/445 

  2 pull requests received 3 new comments:
  - #437 Add interest-cohort to list of Experimental Features (1 by freddieleeman)
    https://github.com/w3c/webappsec-permissions-policy/pull/437 
  - #420 Add interest-cohort to features list (2 by bershanskiy, freddieleeman)
    https://github.com/w3c/webappsec-permissions-policy/pull/420 


Repositories tracked by this digest:
-----------------------------------
* https://github.com/w3c/webappsec
* https://github.com/w3c/webappsec-subresource-integrity
* https://github.com/w3c/webappsec-csp
* https://github.com/w3c/webappsec-mixed-content
* https://github.com/w3c/webappsec-upgrade-insecure-requests
* https://github.com/w3c/webappsec-credential-management
* https://github.com/w3c/permissions
* https://github.com/w3c/webappsec-referrer-policy
* https://github.com/w3c/webappsec-secure-contexts
* https://github.com/w3c/webappsec-clear-site-data
* https://github.com/w3c/webappsec-cowl
* https://github.com/w3c/webappsec-epr
* https://github.com/w3c/webappsec-suborigins
* https://github.com/w3c/webappsec-cspee
* https://github.com/w3c/webappsec-permissions-policy
* https://github.com/w3c/webappsec-fetch-metadata
* https://github.com/w3c/webappsec-trusted-types
* https://github.com/w3c/webappsec-change-password-url
* https://github.com/w3c/webappsec-post-spectre-webdev


-- 
Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config

Received on Monday, 14 February 2022 17:00:46 UTC