Weekly github digest (WebAppSec specs)

Issues
------
* w3c/webappsec-csp (+0/-0/💬1)
  1 issues received 1 new comments:
  - #256 Add way to define all country code top-level domain. (1 by h2oearth)
    https://github.com/w3c/webappsec-csp/issues/256 

* w3c/webappsec-trusted-types (+0/-0/💬4)
  4 issues received 4 new comments:
  - #380 TrustedTypes bypass using iframes (1 by ai-completed)
    https://github.com/w3c/trusted-types/issues/380 
  - #360 Can we conditionally enforce Trusted Types based on document response type in XHR? (1 by ai-completed)
    https://github.com/w3c/trusted-types/issues/360 
  - #347 Create [TrustedTypes].fromLiteral method (1 by ai-completed)
    https://github.com/w3c/trusted-types/issues/347 
  - #260 Document.write and such as names are misleading (1 by ai-completed)
    https://github.com/w3c/trusted-types/issues/260 [spec] 



Pull requests
-------------
* w3c/webappsec (+1/-2/💬1)
  1 pull requests submitted:
  - Add small announcement for Source Code Transparency explainer and proposal (by twiss)
    https://github.com/w3c/webappsec/pull/637 

  1 pull requests received 1 new comments:
  - #635 Tpac2023 charter comments (1 by plehegar)
    https://github.com/w3c/webappsec/pull/635 

  2 pull requests merged:
  - Tpac2023 charter comments
    https://github.com/w3c/webappsec/pull/635 
  - Add small announcement for Source Code Transparency explainer and proposal
    https://github.com/w3c/webappsec/pull/637 

* w3c/permissions (+0/-0/💬1)
  1 pull requests received 1 new comments:
  - #420 Inform users when a UA administrator overrides their permission choices. (1 by marcoscaceres)
    https://github.com/w3c/permissions/pull/420 


Repositories tracked by this digest:
-----------------------------------
* https://github.com/w3c/webappsec
* https://github.com/w3c/webappsec-subresource-integrity
* https://github.com/w3c/webappsec-csp
* https://github.com/w3c/webappsec-mixed-content
* https://github.com/w3c/webappsec-upgrade-insecure-requests
* https://github.com/w3c/webappsec-credential-management
* https://github.com/w3c/permissions
* https://github.com/w3c/permissions-registry
* https://github.com/w3c/webappsec-referrer-policy
* https://github.com/w3c/webappsec-secure-contexts
* https://github.com/w3c/webappsec-clear-site-data
* https://github.com/w3c/webappsec-cowl
* https://github.com/w3c/webappsec-epr
* https://github.com/w3c/webappsec-suborigins
* https://github.com/w3c/webappsec-cspee
* https://github.com/w3c/webappsec-permissions-policy
* https://github.com/w3c/webappsec-fetch-metadata
* https://github.com/w3c/webappsec-trusted-types
* https://github.com/w3c/webappsec-change-password-url
* https://github.com/w3c/webappsec-post-spectre-webdev


-- 
Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config

Received on Monday, 23 October 2023 17:00:30 UTC