- From: W3C Webmaster via GitHub API <sysbot+gh@w3.org>
- Date: Mon, 06 Jan 2025 17:00:22 +0000
- To: public-webappsec@w3.org
- Message-Id: <E1tUqSk-00FURR-21@janus.w3.internal>
Issues ------ * w3c/webappsec (+1/-0/💬7) 1 issues created: - Provide clear guidelines for what `Timing-Allow-Origin` should expose (by noamr) https://github.com/w3c/webappsec/issues/664 1 issues received 7 new comments: - #664 Provide clear guidelines for what `Timing-Allow-Origin` should expose (7 by annevk, arturjanc, noamr) https://github.com/w3c/webappsec/issues/664 * w3c/permissions (+0/-0/💬1) 1 issues received 1 new comments: - #454 Bring this document to CR (1 by simoneonofri) https://github.com/w3c/permissions/issues/454 * w3c/webappsec-permissions-policy (+0/-0/💬2) 2 issues received 2 new comments: - #483 Deny all like alias for the Permission-Policy: Header (1 by nekromoff) https://github.com/w3c/webappsec-permissions-policy/issues/483 - #55 Support for declaring feature policy in HTML (1 by jkarlin) https://github.com/w3c/webappsec-permissions-policy/issues/55 [feedback] * w3c/webappsec-trusted-types (+2/-4/💬17) 2 issues created: - What shoud script element's textContent's sink string be? (by mbrodesser-Igalia) https://github.com/w3c/trusted-types/issues/572 - Examine tests which are commented out in <GlobalEventHandlers-onclick.html> (by mbrodesser-Igalia) https://github.com/w3c/trusted-types/issues/571 5 issues received 17 new comments: - #572 What shoud script element's textContent's sink string be? (7 by evilpie, fred-wang, lukewarlow) https://github.com/w3c/trusted-types/issues/572 - #571 Examine tests which are commented out in <GlobalEventHandlers-onclick.html> (3 by fred-wang, lukewarlow) https://github.com/w3c/trusted-types/issues/571 - #570 Add tests for `setAttribute`/`setAttributeNS`'s sink names (1 by fred-wang) https://github.com/w3c/trusted-types/issues/570 - #568 Add tests for setInterval()/setTimeout() called from WorkerGlobalScope (1 by fred-wang) https://github.com/w3c/trusted-types/issues/568 - #494 Improve test coverage of sink values (5 by fred-wang, lukewarlow) https://github.com/w3c/trusted-types/issues/494 4 issues closed: - Examine tests which are commented out in <GlobalEventHandlers-onclick.html> https://github.com/w3c/trusted-types/issues/571 - What shoud script element's textContent's sink string be? https://github.com/w3c/trusted-types/issues/572 - Add tests for `setAttribute`/`setAttributeNS`'s sink names https://github.com/w3c/trusted-types/issues/570 - Add tests for setInterval()/setTimeout() called from WorkerGlobalScope https://github.com/w3c/trusted-types/issues/568 Repositories tracked by this digest: ----------------------------------- * https://github.com/w3c/webappsec * https://github.com/w3c/webappsec-subresource-integrity * https://github.com/w3c/webappsec-csp * https://github.com/w3c/webappsec-mixed-content * https://github.com/w3c/webappsec-upgrade-insecure-requests * https://github.com/w3c/webappsec-credential-management * https://github.com/w3c/permissions * https://github.com/w3c/permissions-registry * https://github.com/w3c/webappsec-referrer-policy * https://github.com/w3c/webappsec-secure-contexts * https://github.com/w3c/webappsec-clear-site-data * https://github.com/w3c/webappsec-cowl * https://github.com/w3c/webappsec-epr * https://github.com/w3c/webappsec-suborigins * https://github.com/w3c/webappsec-cspee * https://github.com/w3c/webappsec-permissions-policy * https://github.com/w3c/webappsec-fetch-metadata * https://github.com/w3c/webappsec-trusted-types * https://github.com/w3c/webappsec-change-password-url * https://github.com/w3c/webappsec-post-spectre-webdev -- Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config
Received on Monday, 6 January 2025 17:00:24 UTC