Weekly github digest (WebAppSec specs)

Issues
------
* w3c/webappsec (+1/-0/💬1)
  1 issues created:
  - CfC to publish DBSC as a FPWD (by simoneonofri)
    https://github.com/w3c/webappsec/issues/677 

  1 issues received 1 new comments:
  - #675 Planning 2025-07-16. (1 by kmonsen)
    https://github.com/w3c/webappsec/issues/675 

* w3c/webappsec-csp (+1/-0/💬2)
  1 issues created:
  - setting cssText rather than style (by johanneswilm)
    https://github.com/w3c/webappsec-csp/issues/774 

  1 issues received 2 new comments:
  - #736 Making CSP more usable for organizations at scale (2 by swijckmans)
    https://github.com/w3c/webappsec-csp/issues/736 

* w3c/webappsec-trusted-types (+0/-1/💬0)
  1 issues closed:
  - Why is "callback **this** value set to null" required in step 5 of "Get Trusted Type policy value"? https://github.com/w3c/trusted-types/issues/468 



Pull requests
-------------
* w3c/webappsec-subresource-integrity (+1/-0/💬4)
  1 pull requests submitted:
  - Extend integrity policy's coverage to include stylesheets (by FKLC)
    https://github.com/w3c/webappsec-subresource-integrity/pull/146 

  1 pull requests received 4 new comments:
  - #146 Extend integrity policy's coverage to include stylesheets (4 by FKLC, annevk)
    https://github.com/w3c/webappsec-subresource-integrity/pull/146 

* w3c/webappsec-trusted-types (+2/-3/💬8)
  2 pull requests submitted:
  - Cleanup calling of some algorithms (by lukewarlow)
    https://github.com/w3c/trusted-types/pull/591 
  - Make get trusted types-compliant attribute value take strings instead… (by lukewarlow)
    https://github.com/w3c/trusted-types/pull/590 

  2 pull requests received 8 new comments:
  - #591 Cleanup calling of some algorithms (1 by lukewarlow)
    https://github.com/w3c/trusted-types/pull/591 
  - #585 Add missing parameter name for algorithm (7 by TimvdLippe, fred-wang, lukewarlow, w3cbot)
    https://github.com/w3c/trusted-types/pull/585 

  3 pull requests merged:
  - Add missing parameter name for algorithm
    https://github.com/w3c/trusted-types/pull/585 
  - Make get trusted types-compliant attribute value take strings instead…
    https://github.com/w3c/trusted-types/pull/590 
  - Use WebIDL Invoke Callback
    https://github.com/w3c/trusted-types/pull/589 


Repositories tracked by this digest:
-----------------------------------
* https://github.com/w3c/webappsec
* https://github.com/w3c/webappsec-subresource-integrity
* https://github.com/w3c/webappsec-csp
* https://github.com/w3c/webappsec-mixed-content
* https://github.com/w3c/webappsec-upgrade-insecure-requests
* https://github.com/w3c/webappsec-credential-management
* https://github.com/w3c/permissions
* https://github.com/w3c/permissions-registry
* https://github.com/w3c/webappsec-referrer-policy
* https://github.com/w3c/webappsec-secure-contexts
* https://github.com/w3c/webappsec-clear-site-data
* https://github.com/w3c/webappsec-cowl
* https://github.com/w3c/webappsec-epr
* https://github.com/w3c/webappsec-suborigins
* https://github.com/w3c/webappsec-cspee
* https://github.com/w3c/webappsec-permissions-policy
* https://github.com/w3c/webappsec-fetch-metadata
* https://github.com/w3c/webappsec-trusted-types
* https://github.com/w3c/webappsec-change-password-url
* https://github.com/w3c/webappsec-post-spectre-webdev


-- 
Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config

Received on Monday, 7 July 2025 17:00:26 UTC