- From: W3C Webmaster via GitHub API <sysbot+gh@w3.org>
- Date: Mon, 01 Jul 2024 17:00:22 +0000
- To: public-webappsec@w3.org
- Message-Id: <E1sOKO6-00GwLT-10@janus.w3.internal>
Issues ------ * w3c/webappsec-subresource-integrity (+1/-0/💬1) 1 issues created: - Idea: Add Integrity Request Header (by tetsuyainfra) https://github.com/w3c/webappsec-subresource-integrity/issues/123 1 issues received 1 new comments: - #123 Idea: Add Integrity Request Header (1 by mozfreddyb) https://github.com/w3c/webappsec-subresource-integrity/issues/123 * w3c/webappsec-csp (+1/-1/💬2) 1 issues created: - `report-sample` is not checked when firing "securitypolicyviolation" events (by mbrodesser-Igalia) https://github.com/w3c/webappsec-csp/issues/669 2 issues received 2 new comments: - #669 `report-sample` is not checked when firing "securitypolicyviolation" events (1 by lukewarlow) https://github.com/w3c/webappsec-csp/issues/669 - #575 `'report-hash'`: Adding hashes of blocked content to violation reports (1 by bmeck) https://github.com/w3c/webappsec-csp/issues/575 1 issues closed: - `report-sample` is not checked when firing "securitypolicyviolation" events https://github.com/w3c/webappsec-csp/issues/669 * w3c/webappsec-permissions-policy (+0/-2/💬3) 2 issues received 3 new comments: - #273 Prevent programmatic focus in iframe (1 by bozghiyy) https://github.com/w3c/webappsec-permissions-policy/issues/273 [proposed feature] - #171 Feature policy for not messing with scrolling? (2 by Desentso, clelland) https://github.com/w3c/webappsec-permissions-policy/issues/171 [proposed feature] 2 issues closed: - JS playgrounds leak permissions. Guidelines and examples needed https://github.com/w3c/webappsec-permissions-policy/issues/547 - PermissionsPolicyViolationReportBody is missing a toJSON operation https://github.com/w3c/webappsec-permissions-policy/issues/469 * w3c/webappsec-trusted-types (+1/-1/💬18) 1 issues created: - Should the `trusted-types` CSP directive support the `report-sample` keyword? (by mbrodesser-Igalia) https://github.com/w3c/trusted-types/issues/531 4 issues received 18 new comments: - #531 Should the `trusted-types` CSP directive support the `report-sample` keyword? (7 by lukewarlow, mbrodesser-Igalia) https://github.com/w3c/trusted-types/issues/531 - #521 getPropertyType and SVGScriptElement href baseVal property (1 by koto) https://github.com/w3c/trusted-types/issues/521 [spec] - #520 Finalise spec mechanism for event handlers (8 by annevk, koto, lukewarlow, otherdaniel) https://github.com/w3c/trusted-types/issues/520 [spec] - #469 Stringification of TrustedHTML with `null`-data needs to be specified (2 by annevk, lukewarlow) https://github.com/w3c/trusted-types/issues/469 1 issues closed: - Should the `trusted-types` CSP directive support the `report-sample` keyword? https://github.com/w3c/trusted-types/issues/531 Pull requests ------------- * w3c/webappsec-csp (+0/-0/💬1) 1 pull requests received 1 new comments: - #564 Remove `navigate-to`. (1 by jacksonrayhamilton) https://github.com/w3c/webappsec-csp/pull/564 * w3c/webappsec-credential-management (+1/-0/💬0) 1 pull requests submitted: - Use credential type registry for permissions + digital credentials (by marcoscaceres) https://github.com/w3c/webappsec-credential-management/pull/242 * w3c/webappsec-permissions-policy (+0/-2/💬1) 1 pull requests received 1 new comments: - #548 Add two "JS playground" examples. (1 by clelland) https://github.com/w3c/webappsec-permissions-policy/pull/548 2 pull requests merged: - Add two "JS playground" examples. https://github.com/w3c/webappsec-permissions-policy/pull/548 - Add PermissionsPolicyViolationReportBody toJSON operation https://github.com/w3c/webappsec-permissions-policy/pull/472 Repositories tracked by this digest: ----------------------------------- * https://github.com/w3c/webappsec * https://github.com/w3c/webappsec-subresource-integrity * https://github.com/w3c/webappsec-csp * https://github.com/w3c/webappsec-mixed-content * https://github.com/w3c/webappsec-upgrade-insecure-requests * https://github.com/w3c/webappsec-credential-management * https://github.com/w3c/permissions * https://github.com/w3c/permissions-registry * https://github.com/w3c/webappsec-referrer-policy * https://github.com/w3c/webappsec-secure-contexts * https://github.com/w3c/webappsec-clear-site-data * https://github.com/w3c/webappsec-cowl * https://github.com/w3c/webappsec-epr * https://github.com/w3c/webappsec-suborigins * https://github.com/w3c/webappsec-cspee * https://github.com/w3c/webappsec-permissions-policy * https://github.com/w3c/webappsec-fetch-metadata * https://github.com/w3c/webappsec-trusted-types * https://github.com/w3c/webappsec-change-password-url * https://github.com/w3c/webappsec-post-spectre-webdev -- Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config
Received on Monday, 1 July 2024 17:00:23 UTC