issues
search
w3c
/
webappsec-suborigins
Suborigins
https://w3c.github.io/webappsec-suborigins/
Other
25
stars
9
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
Mark spec as no longer being worked on? And archive this repo?
#81
sideshowbarker
opened
3 years ago
0
Document how Referrer Policy would work with suborigins
#80
jeremylong
opened
6 years ago
1
Tainting a canvas in case of different suborigins
#79
mniemietz
opened
6 years ago
2
Integration with the Storage Standard
#78
annevk
opened
6 years ago
0
Consider renaming unsafe-postmessage-* to unsafe-window-postmessage-*
#77
annevk
opened
6 years ago
0
Tradeoff between unsafe-* and refactoring
#76
annevk
opened
6 years ago
0
Remove unsafe-cookies
#75
annevk
opened
6 years ago
1
Alternate `postMessage()` design
#74
annevk
opened
6 years ago
1
Alternate CORS design
#73
annevk
opened
6 years ago
1
Rename Suborigin request header to Sec-suborigin
#72
annevk
opened
7 years ago
0
Protecting Suborigined content from non-suborigined content
#71
adob
opened
7 years ago
4
Keep the published editors draft in sync with master
#70
adob
opened
7 years ago
6
Remove Unicode serialization of a suborigin
#69
annevk
opened
7 years ago
0
Add myself as editor
#68
jeisinger
closed
7 years ago
6
Sketch for how postMessage / MessageEvent could work
#67
jeisinger
closed
7 years ago
15
Remove need for serializing a suborigin
#66
jeisinger
opened
7 years ago
0
same-physical-origin not defined for opaque origins
#65
clelland
opened
7 years ago
2
Use path prefixes instead?
#64
hlandau
opened
7 years ago
3
Remove issue about HTML origins
#63
joelweinberger
closed
7 years ago
0
Suborigin names can only start with letters.
#62
joelweinberger
closed
7 years ago
10
Minor WebSockets heading change
#61
joelweinberger
closed
7 years ago
0
Remove "origin concept" references
#60
joelweinberger
closed
7 years ago
0
Simplify web platform section
#59
joelweinberger
closed
7 years ago
1
Minor cookie wording tweaks
#58
joelweinberger
closed
7 years ago
0
Origin update
#57
joelweinberger
closed
7 years ago
1
Disable <meta> Set-Cookie
#56
joelweinberger
closed
7 years ago
11
Fix Document link error and lack of privacy considerations section
#55
joelweinberger
closed
7 years ago
0
Move opt outs to their own subsections
#54
joelweinberger
closed
7 years ago
0
Don't use The Web Origin Concept
#53
annevk
closed
7 years ago
4
Force with credentials
#52
joelweinberger
closed
7 years ago
15
Update security model opt-out flags to interact with processing models
#51
joelweinberger
opened
7 years ago
0
Force include credentials
#50
joelweinberger
closed
7 years ago
5
Stop using blacklist as a term
#49
annevk
closed
7 years ago
2
Add issues for v1 TODOs
#48
joelweinberger
closed
7 years ago
0
Suborigin names should not be allowed to start with number
#47
joelweinberger
closed
7 years ago
4
Disable WebSockets
#46
joelweinberger
closed
7 years ago
1
Change serialization to scheme and host version
#45
joelweinberger
closed
7 years ago
1
What to do with WebSockets
#44
joelweinberger
opened
8 years ago
6
Suborigin cookies should not be treated as third-party
#43
devd
opened
8 years ago
2
Change serialization to use $suborigin$host format
#42
joelweinberger
closed
8 years ago
2
Fix compilation
#41
joelweinberger
closed
8 years ago
1
Create a reserved prefix or delimiter for serialization of typed suborigins
#40
hillbrad
closed
7 years ago
3
Understanding the syntax
#39
intchloe
closed
8 years ago
2
Underscore should not be used for serialization.
#38
naskooskov
closed
7 years ago
39
Basic cookie-averse definition
#37
joelweinberger
closed
8 years ago
0
<meta http-equiv="Set-Cookie" content="..."> should be ignored
#36
bsittler
closed
7 years ago
2
document.suborigin or something should allow JS to detect if in suborigin
#35
devd
opened
8 years ago
7
How to treat localStorage and sessionStorage
#34
joelweinberger
opened
8 years ago
18
Default to withCredentials=true for CORS requests
#33
arturjanc
closed
7 years ago
17
Fix typo In -> If
#32
adob
closed
8 years ago
0
Next