Weekly github digest (WebAppSec specs)

Issues
------
* w3c/webappsec (+0/-0/💬1)
  1 issues received 1 new comments:
  - #685 Planning 2025-08-20. (1 by mikewest)
    https://github.com/w3c/webappsec/issues/685 

* w3c/webappsec-csp (+1/-1/💬0)
  1 issues created:
  - Mish (by mishoslah)
    https://github.com/w3c/webappsec-csp/issues/783 

  1 issues closed:
  - Mish https://github.com/w3c/webappsec-csp/issues/783 [invalid] 

* w3c/webappsec-trusted-types (+1/-0/💬5)
  1 issues created:
  - 3.5. Process value with a default policy doesn't take into account `default_policy` could be null (by tete17)
    https://github.com/w3c/trusted-types/issues/595 

  1 issues received 5 new comments:
  - #595 3.5. Process value with a default policy doesn't take into account `default_policy` could be null (5 by lukewarlow, tete17)
    https://github.com/w3c/trusted-types/issues/595 [bug] [spec] 



Pull requests
-------------
* w3c/webappsec-subresource-integrity (+1/-0/💬2)
  1 pull requests submitted:
  - feat: better bytesMatch  algorithm (by Uzlopak)
    https://github.com/w3c/webappsec-subresource-integrity/pull/153 

  2 pull requests received 2 new comments:
  - #153 feat: better bytesMatch  algorithm (1 by mozfreddyb)
    https://github.com/w3c/webappsec-subresource-integrity/pull/153 
  - #151 reduce complexity of get strongest metadata (1 by Uzlopak)
    https://github.com/w3c/webappsec-subresource-integrity/pull/151 

* w3c/webappsec-csp (+0/-0/💬4)
  1 pull requests received 4 new comments:
  - #564 Remove `navigate-to`. (4 by kentonv)
    https://github.com/w3c/webappsec-csp/pull/564 

* w3c/webappsec-permissions-policy (+0/-0/💬1)
  1 pull requests received 1 new comments:
  - #574 [focus-without-user-activation] Add pseudo algorithm and examples (1 by ffiori)
    https://github.com/w3c/webappsec-permissions-policy/pull/574 


Repositories tracked by this digest:
-----------------------------------
* https://github.com/w3c/webappsec
* https://github.com/w3c/webappsec-subresource-integrity
* https://github.com/w3c/webappsec-csp
* https://github.com/w3c/webappsec-mixed-content
* https://github.com/w3c/webappsec-upgrade-insecure-requests
* https://github.com/w3c/webappsec-credential-management
* https://github.com/w3c/permissions
* https://github.com/w3c/permissions-registry
* https://github.com/w3c/webappsec-referrer-policy
* https://github.com/w3c/webappsec-secure-contexts
* https://github.com/w3c/webappsec-clear-site-data
* https://github.com/w3c/webappsec-cowl
* https://github.com/w3c/webappsec-epr
* https://github.com/w3c/webappsec-suborigins
* https://github.com/w3c/webappsec-cspee
* https://github.com/w3c/webappsec-permissions-policy
* https://github.com/w3c/webappsec-fetch-metadata
* https://github.com/w3c/webappsec-trusted-types
* https://github.com/w3c/webappsec-change-password-url
* https://github.com/w3c/webappsec-post-spectre-webdev


-- 
Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config

Received on Monday, 18 August 2025 17:00:30 UTC