-
Notifications
You must be signed in to change notification settings - Fork 2.9k
Pull requests: whatwg/html
Author
Label
Milestones
Reviews
Assignee
Sort
Pull requests list
Define the New features or enhancements
privacy-tracker
Group bringing to attention of Privacy, or tracked by the Privacy Group but not needing response.
security/privacy
There are security or privacy implications
terms-of-service
link type.
addition/proposal
#9877
by mikewest
was merged Nov 6, 2023
Loading…
5 tasks done
Define the New features or enhancements
privacy-tracker
Group bringing to attention of Privacy, or tracked by the Privacy Group but not needing response.
security/privacy
There are security or privacy implications
privacy-policy
link type.
addition/proposal
#9860
by mikewest
was merged Nov 6, 2023
Loading…
5 tasks done
Set requests' user activation flag during navigation.
#5203
by mikewest
was merged Mar 4, 2021
Loading…
3 tasks done
Gate
javascript:
navigation on sandboxing flags.
topic: javascript: URLs
topic: navigation
#5083
opened Nov 13, 2019 by
mikewest
Loading…
2 of 3 tasks
Update 'destination' for navigation requests.
#4976
by mikewest
was merged Jun 5, 2020
Loading…
3 tasks done
Tie 'document.domain' to a new policy-controlled feature.
impacts documentation
Used by documentation communities, such as MDN, to track changes that impact documentation
#4170
by mikewest
was merged Nov 14, 2018
Loading…
Enforce strict MIME type checks for worker-imported scripts.
normative change
topic: script
topic: workers
#4001
by mikewest
was merged Dec 18, 2018
Loading…
Editorial: Clarifying secure context integration with Shared Workers.
clarification
Standard could be clearer
security/privacy
There are security or privacy implications
topic: workers
#3243
by mikewest
was merged Nov 20, 2017
Loading…
Add an 'onsecuritypolicyviolation' global handler.
topic: events
#2651
by mikewest
was merged Jul 13, 2017
Loading…
Delegate srcdoc's CSP list initialization to CSP.
do not merge yet
Pull request must not be merged per rationale in comment
#2599
by mikewest
was closed Apr 28, 2021
Loading…
Hide Pull request must not be merged per rationale in comment
security/privacy
There are security or privacy implications
nonce
content attribute values. (#2369)
do not merge yet
#2373
by mikewest
was merged Nov 22, 2017
Loading…
Apply CSP to 'javascript:' URL navigation.
needs tests
Moving the issue forward requires someone to write tests
topic: navigation
#2025
by mikewest
was merged Nov 14, 2016
Loading…
Ensure that 'noopener' does not reuse a browsing context
do not merge yet
Pull request must not be merged per rationale in comment
needs tests
Moving the issue forward requires someone to write tests
#1842
by mikewest
was closed Feb 5, 2018
Loading…
Add 'nonce' to <link>.
document conformance
topic: link
#1820
by mikewest
was merged Sep 28, 2016
Loading…
Set "one permitted sandbox navigator" for all sandbox-created popups.
#1774
by mikewest
was merged Sep 12, 2016
Loading…
Treat 'data:' documents as unique, opaque origins
compat
Standard is not web compatible or proprietary feature needs standardizing
normative change
security/privacy
There are security or privacy implications
#1756
by mikewest
was merged Sep 13, 2016
Loading…
Upstream navigation hooks from CSP
topic: forms
topic: navigation
#1619
by mikewest
was merged Aug 18, 2016
Loading…
Upstream 'SharedWorker()' changes from Secure Contexts.
#1560
by mikewest
was merged Jul 15, 2016
Loading…
Previous Next
ProTip!
Exclude everything labeled
bug
with -label:bug.