[Bug 19236] Enable CORS on entire site

https://www.w3.org/Bugs/Public/show_bug.cgi?id=19236

--- Comment #5 from Eric Bidelman <ericbidelman@chromium.org> 2012-10-03 21:57:29 UTC ---
More info from Monsur:

"honestly, i don't see it as being a big perf hit as long as devs play within
the rules.. besides, if a dev is being malicious, they can find better ways
that cors to do it (e.g. just write a script to hit the front page over and
over)"

At the very least, I'd like us to consider setting up a form or page where
users can
suggestion their domain if we go the whitelisting route.

-- 
Configure bugmail: https://www.w3.org/Bugs/Public/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the QA contact for the bug.

Received on Wednesday, 3 October 2012 21:57:30 UTC