w3c / webappsec-mixed-content

WebAppSec Mixed Content
https://w3c.github.io/webappsec-mixed-content/
Other
12 stars 22 forks source link

References to "Does Not (Prohibit|Restrict) Mixed Security Contexts" are inconsistent #72

Open shanehandley opened 1 month ago

shanehandley commented 1 month ago

It looks as though the spec uses two similar but different terms to describe the outcome of this check.

The correct one seems to be Does Not Prohibit Mixed Security Contexts (which matches the title of the section). I believe references to Restrict should be replaced with Prohibit

webappsec-mixed-content