google / csp-evaluator

https://csp-evaluator.withgoogle.com
Apache License 2.0
315 stars 45 forks source link

`reflected-xss` directive has been deprecated #16

Closed Malvoz closed 4 years ago

Malvoz commented 4 years ago

The evaluator should note that the directive has been deprecated, see https://github.com/w3c/webappsec-csp/commit/7268ca0718038f1500afe9254a1629105ed4826e ("deferred to CSP3", which is unlikely to ever implement this).