- From: W3C Webmaster via GitHub API <sysbot+gh@w3.org>
- Date: Mon, 20 Jan 2025 17:00:25 +0000
- To: public-webappsec@w3.org
- Message-Id: <E1tZv8T-006DhG-0s@janus.w3.internal>
Issues ------ * w3c/webappsec-csp (+1/-1/💬0) 1 issues created: - How to specify 2 endpoints for Reporting-Endpoints? (by Wowhere) https://github.com/w3c/webappsec-csp/issues/701 1 issues closed: - `javascript:` navigation directive-name is always null https://github.com/w3c/webappsec-csp/issues/427 [duplicate] * w3c/webappsec-mixed-content (+1/-0/💬3) 1 issues created: - Mixed Content iframes on localhost (by mozfreddyb) https://github.com/w3c/webappsec-mixed-content/issues/73 1 issues received 3 new comments: - #73 Mixed Content iframes on localhost (3 by annevk, mikewest) https://github.com/w3c/webappsec-mixed-content/issues/73 * w3c/webappsec-secure-contexts (+0/-1/💬1) 1 issues received 1 new comments: - #71 Convoluted blob: URL issue (1 by annevk) https://github.com/w3c/webappsec-secure-contexts/issues/71 1 issues closed: - Convoluted blob: URL issue https://github.com/w3c/webappsec-secure-contexts/issues/71 * w3c/webappsec-trusted-types (+2/-0/💬3) 2 issues created: - Add test for policies with disposition=report in workers (by fred-wang) https://github.com/w3c/trusted-types/issues/575 - Add tests for "Should Trusted Type policy creation be blocked by Content Security Policy" in workers (by fred-wang) https://github.com/w3c/trusted-types/issues/574 2 issues received 3 new comments: - #575 Add test for policies with disposition=report in workers (1 by fred-wang) https://github.com/w3c/trusted-types/issues/575 - #520 Finalise spec mechanism for event handlers (2 by annevk, fred-wang) https://github.com/w3c/trusted-types/issues/520 [spec] Pull requests ------------- * w3c/webappsec (+1/-1/💬0) 1 pull requests submitted: - Update 2025-01-15-agenda.md (by lukewarlow) https://github.com/w3c/webappsec/pull/667 1 pull requests merged: - Update 2025-01-15-agenda.md https://github.com/w3c/webappsec/pull/667 * w3c/webappsec-csp (+0/-1/💬4) 4 pull requests received 4 new comments: - #665 Add `trusted-types-eval` source expression for `script-src` (1 by lukewarlow) https://github.com/w3c/webappsec-csp/pull/665 [addition/proposal] - #425 Clarify that integrity metadata must be non-empty (1 by ciaramcmullin) https://github.com/w3c/webappsec-csp/pull/425 [editorial] - #424 Use correct set of source expressions in script directives pre-request check (1 by ciaramcmullin) https://github.com/w3c/webappsec-csp/pull/424 [editorial] - #377 Use the duplicate attribute flag is nonceable check (1 by annevk) https://github.com/w3c/webappsec-csp/pull/377 [blocked] 1 pull requests merged: - Add `trusted-types-eval` source expression for `script-src` https://github.com/w3c/webappsec-csp/pull/665 [addition/proposal] Repositories tracked by this digest: ----------------------------------- * https://github.com/w3c/webappsec * https://github.com/w3c/webappsec-subresource-integrity * https://github.com/w3c/webappsec-csp * https://github.com/w3c/webappsec-mixed-content * https://github.com/w3c/webappsec-upgrade-insecure-requests * https://github.com/w3c/webappsec-credential-management * https://github.com/w3c/permissions * https://github.com/w3c/permissions-registry * https://github.com/w3c/webappsec-referrer-policy * https://github.com/w3c/webappsec-secure-contexts * https://github.com/w3c/webappsec-clear-site-data * https://github.com/w3c/webappsec-cowl * https://github.com/w3c/webappsec-epr * https://github.com/w3c/webappsec-suborigins * https://github.com/w3c/webappsec-cspee * https://github.com/w3c/webappsec-permissions-policy * https://github.com/w3c/webappsec-fetch-metadata * https://github.com/w3c/webappsec-trusted-types * https://github.com/w3c/webappsec-change-password-url * https://github.com/w3c/webappsec-post-spectre-webdev -- Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config
Received on Monday, 20 January 2025 17:00:26 UTC