Ecosyste.ms: Issues

An open API service for providing issue and pull request metadata for open source projects.

GitHub / w3c/security-review issues and pull requests

#49 - Section 6: Non-normative but containing implementation requirements?

Issue - State: closed - Opened by w3cbot over 4 years ago - 3 comments
Labels: needs-resolution, s:geolocation, pending, close?, wg:das

#48 - Security review: General observations

Issue - State: closed - Opened by w3cbot over 4 years ago - 1 comment
Labels: tracker, s:geolocation, pending, close?, wg:das

#47 - Define a permission model?

Issue - State: open - Opened by w3cbot over 4 years ago
Labels: tracker, pending, s:miniapp, wg:miniapps, ig:chinese-web

#46 - Elements and APIs in the charter scope

Issue - State: closed - Opened by w3cbot over 4 years ago - 1 comment
Labels: needs-resolution, close?, s:miniapp, wg:miniapps, ig:chinese-web

#45 - Add security section to PTZ explainer

Issue - State: open - Opened by w3cbot over 4 years ago
Labels: tracker, pending, close?, s:image-capture, wg:webrtc

#44 - register() lacks same origin check

Issue - State: open - Opened by w3cbot over 4 years ago
Labels: tracker, pending, close?, s:service-workers, wg:service-workers

#43 - Should network state be keyed beyond the top-level site

Issue - State: open - Opened by w3cbot over 4 years ago
Labels: tracker, pending, whatwg

#42 - Charter: expand WebAppSec citation?

Issue - State: open - Opened by w3cbot over 4 years ago
Labels: needs-resolution, pending, close?, s:miniapp, wg:miniapps, ig:chinese-web

#41 - Consider dropping declarative scope for subresource loading.

Issue - State: open - Opened by w3cbot over 4 years ago
Labels: tracker, pending, close?, s:webpackage, cg:wicg

#40 - Describe what happens with administratively prohibited candidates

Issue - State: open - Opened by w3cbot over 4 years ago
Labels: tracker, s:webrtc, pending, close?, wg:webrtc

#38 - Consider allowing downloads by user interaction within a sandboxed iframe

Issue - State: open - Opened by w3cbot over 4 years ago
Labels: tracker, pending, s:html, whatwg

#37 - Blob URL store partitioning

Issue - State: open - Opened by w3cbot over 4 years ago
Labels: tracker, pending, s:fileapi, wg:webapps

#36 - Add portscanning warning to the spec

Issue - State: open - Opened by w3cbot over 4 years ago
Labels: tracker, s:webrtc, pending, close?, wg:webrtc

#35 - Make high resolution time dependant on cross-origin isolated

Issue - State: open - Opened by w3cbot over 4 years ago
Labels: tracker, s:hr-time, pending, close?, wg:webperf

#34 - Service workers allow for more responses to be executed as script

Issue - State: open - Opened by plehegar over 4 years ago
Labels: tracker, pending, s:service-workers, wg:service-workers

#32 - Requirements for CORS safe-list

Issue - State: open - Opened by plehegar over 4 years ago
Labels: tracker, pending, s:trace-context, wg:distributed-tracing

#31 - Add display hints to data model, for example: information to use a Web Component

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, pending, s:vc-data-model, close?, wg:vc

#30 - Expose sensors to workers

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, pending, s:generic-sensor, wg:das

#29 - Javascript 120Hz devicemotion events for high end inertial applications

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, pending, s:generic-sensor, wg:das

#28 - Privacy - identifying parameters

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, pending, s:generic-sensor, wg:das

#27 - Relation to Permissions API

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, pending, s:generic-sensor, wg:das

#26 - Access to magnetometer and potential security & privacy issues

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, pending, s:generic-sensor, wg:das

#25 - PING self review

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, pending, s:pub-manifest, close?, wg:pm, wg:publishing

#24 - Consider context by reference with metadata

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, pending, s:json-ld, wg:json-ld

#23 - Make getGamepads API asyncronous to support permission request

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:gamepad, pending, close?, wg:webapps

#22 - How do connection/disconnection events interact with 'device has been interacted with by the user'?

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:gamepad, pending, wg:webapps

#21 - Clarifications for getGamepads

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:gamepad, pending, wg:webapps

#20 - Security and privacy considerations for DOMHighResTimeStamp resolution

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:hr-time, pending, wg:webperf

#19 - id field in gamepad might have a persistent identifier?

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:gamepad, pending, wg:webapps

#18 - Use of icecandidateerror in port scanning

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:webrtc, pending, close?, wg:webrtc

#17 - disallow pairing ice-tcp candidates with local ip addresses

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:webrtc, pending, close?, wg:webrtc

#16 - Refer to IntersectionObserver from the Security Considerations

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:webauthn, pending, close?, wg:webauthn

#15 - Add to sec cons a brief discussion of the sec properties accrued by authnr & client platform proximity

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:webauthn, pending, close?, wg:webauthn

#14 - setPointerCapture should be disabled in sandboxed iframes by default

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:pointerevents, pending, close?, wg:pointer-events

#13 - How do the payer and payee agree on the payment obligation as part of the flow?

Issue - State: open - Opened by plehegar almost 5 years ago - 1 comment
Labels: tracker, s:payment-request, pending, close?, wg:payments

#12 - [Auth] Symmetric vs Asymmetric

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:openscreenprotocol, pending, close?, wg:secondscreen

#11 - [Auth] Length of Password

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:openscreenprotocol, pending, close?

#11 - [Auth] Length of Password

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:openscreenprotocol, pending, close?, wg:secondscreen

#10 - [Auth] Revisiting a previously established session

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:openscreenprotocol, pending, close?

#10 - [Auth] Revisiting a previously established session

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:openscreenprotocol, pending, close?, wg:secondscreen

#9 - [Auth] Certificates and devices

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:openscreenprotocol, pending, wg:secondscreen

#8 - [Auth] Trusted Displays

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:openscreenprotocol, pending, wg:secondscreen

#7 - [Privacy] Fate of metadata / authentication history when clearing browsing data

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:openscreenprotocol, pending, close?, wg:secondscreen

#7 - [Privacy] Fate of metadata / authentication history when clearing browsing data

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:openscreenprotocol, pending, close?

#6 - [Security] Describe encoding/decoding of PSK into numeric and QR codes.

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:openscreenprotocol, pending, close?, wg:secondscreen

#6 - [Security] Describe encoding/decoding of PSK into numeric and QR codes.

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:openscreenprotocol, pending, close?, wg:secondscreen

#5 - Adjust cipher and signature algorithm preference list for hardware

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:openscreenprotocol, pending, close?, wg:secondscreen

#4 - Do agents need to support the Cookies extension (used in HelloRetryRequest)?

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:openscreenprotocol, pending, close?, wg:secondscreen

#3 - Determine if there is an advantage to session resumption outside of early data.

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:openscreenprotocol, pending, close?, wg:secondscreen

#2 - Update SPAKE2 section according to current IETF draft

Issue - State: open - Opened by plehegar almost 5 years ago
Labels: tracker, s:openscreenprotocol, pending, close?, wg:secondscreen

#1 - Disable geolocation by default in cross-origin iframes

Issue - State: open - Opened by plehegar almost 5 years ago - 3 comments
Labels: tracker, s:geolocation, pending, close?, wg:das