Open Actions

Apply the following changes to selected action items:

There are 28 open actions.

ID State Title Person Due Date Associated with
ACTION-141 (edit) open CSP Next: Update default-src language to be more future-proof Mike West 2015-01-31 CSP Level 3
ACTION-144 (edit) open CSP Next: Propose text on layering of fetch context types with CSP directives Mike West 2015-01-31 CSP Level 3
ACTION-164 (edit) open CSP Next: Integrate mnot's cookie scope proposal. Mike West 2015-01-31 CSP Level 3
ACTION-166 (edit) open to add an explicit "privacy considerations" section to sri Mike West 2014-03-19 Subresource Integrity Level 1
ACTION-167 (edit) open Respond to list queries about hints for content-addressable storage Devdatta Akhawe 2014-05-30 Subresource Integrity Level 1
ACTION-169 (edit) open Read and respond to use of sri hashes for caching/alternate locations: http://lists.w3.org/archives/public/public-webappsec/2014mar/0103.html Devdatta Akhawe 2014-05-30 Subresource Integrity Level 1
ACTION-172 (edit) open Review servicewoker issues relevant to csp from github Mike West 2015-01-31 CSP Level 3
ACTION-181 (edit) open Suggest more clear use case and language around exact behavior for noncanonical-src Brad Hill 2014-11-17 Subresource Integrity Level 1
ACTION-182 (edit) open Make sure blob origin is discussed further on list Brad Hill 2014-11-17 CSP Level 3
ACTION-186 (edit) open Do more research on preventing 401 attach http://lists.w3.org/archives/public/public-webappsec/2014aug/0016.html Brad Hill 2015-01-31 CSP Level 3
ACTION-188 (edit) open Evaluate json-src Mike West 2015-01-31 CSP Level 3
ACTION-189 (edit) open Evaluate script-ancestors Mike West 2015-01-31 CSP Level 3
ACTION-190 (edit) open Is reflected-xss directive at risk? David Walp 2014-11-03 ISSUE-62
ACTION-192 (edit) open Evaluate control over nesting depth. Mike West 2014-11-03 CSP Level 3
ACTION-198 (edit) open Take bookmarklets discussion back to the list Brad Hill 2014-11-17 CSP Level 3
ACTION-199 (edit) open Keep topic of internet/intranet connectivity and https on the w3c radar Wendy Seltzer 2014-11-03
ACTION-207 (edit) open Raise definition of sandboxed worker in html spec Brad Hill 2014-11-24
ACTION-209 (edit) open Ask open data/linked data groups for info on data publishing for use in secure context Wendy Seltzer 2015-01-19
ACTION-210 (edit) open Move sri bugs in bugzilla to github Brad Hill 2015-01-19
ACTION-211 (edit) open Ask github if they prefer fail open / closed on unknown hashes Brad Hill 2015-01-19
ACTION-212 (edit) open Issue cfc to take mixed content to cr Brad Hill 2015-02-16
ACTION-213 (edit) open Reply to brian smith re: csp2 to cr Brad Hill 2015-02-16
ACTION-215 (edit) open Schedule conversation with web platform wg chairs and webappsec re csp3 Wendy Seltzer 2016-01-15
ACTION-218 (edit) open And dveditz to send call for wide review for referrer policy Mike West 2017-11-13
ACTION-219 (edit) open And dveditz to send call for wide review for secure contexts Mike West 2017-11-13
ACTION-220 (edit) open File issue on the spec to match firefox behavior Daniel Veditz 2017-11-13
ACTION-221 (edit) open Figure out new syntax and send to the list Mike West 2017-11-13
ACTION-222 (edit) open Take a stab a specifying a cors switch "retry without creds on failure" Mike West 2017-11-14

Add a new action item. See all the action items


Daniel Veditz <dveditz@mozilla.com>, Mike West <mkwst@google.com>, Chairs, Wendy Seltzer <wseltzer@w3.org>, Samuel Weiler <weiler@w3.org>, Staff Contacts
Tracker: documentation, (configuration for this group), originally developed by Dean Jackson, is developed and maintained by the Systems Team <w3t-sys@w3.org>.
$Id: open.html,v 1.1 2020/01/17 08:52:17 carcone Exp $