ISSUE-38: Discuss no-mixed-content further as a 1.1 experimental directive
Discuss no-mixed-content further as a 1.1 experimental directive
- State:
- CLOSED
- Product:
- CSP Level 2
- Raised by:
- Opened on:
- 2012-11-02
- Description:
- Related Actions Items:
- No related actions
- Related emails:
- No related emails
Related notes:
consensus at F2F on 25th, this can be controlled in other ways - HSTS, default-src https://, etc... and most modern browsers block active mixed content by default. no need to implement
Brad Hill, 25 Apr 2013, 20:19:09Display change log