2010-02-14 04:40:45: Created issue 'Remove the srcdoc attribute from the HTML5 specification' nickname srcdoc owned by Shelley Powers on product HTML 5 spec, description 'The HTML5 editor has marked Bug 8818 as WONTFIX.
The srcdoc attribute does not have universal acceptance, and the group was still
discussing it when the editor added it to the specification, without group consensus.
The supposed use case for this attribute is weblog comments, but concerns about
HTML security have been resolved with weblog and other application comments
years ago. In addition, support for this attribute could give the impression
that online sites don't need any other security, which is false. Script
injection is only one aspect of security related to weblog comments, and
considered a fairly trivial one at that.
Remove srcdoc from the HTML5 specification.
' non-public [Shelley Powers]