So, internets. What do you think about adding 'navigation-to' to CSP? Strawman at https://w3c.github.io/webappsec-csp/#directive-navigation-to …. /cc @hillbrad
-
-
At what point should we just start writing CSP in HTML?
2 replies 0 retweets 0 likes -
Just expressing a vague feeling that as CSP grows to say more things, it feels like writing the web page twice.
2 replies 0 retweets 4 likes
Using all of CSP on a page is like trying to use all of HTML5 ;-) For XSS protection a nonce should suffice.
9:53 AM - 6 Oct 2016
0 replies
0 retweets
1 like
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.