CSP was always a mixed bag to help with various bugs (clickjacking, MIX, XSS). So... which box?
-
-
right. I agree. If CSP is useful for a few companies that's cool. Now on to newer greener pastures.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Nothing but CSP has caught on, not because of monopoly, but other issues. Solve them, we all win.
-
I'm not sure if you are arguing for even more attention on CSP, or what :-).
-
Our arguments are just to spend more time thinking of different approaches. You don't like that?
-
or what are we talking about…
-
I'm 100% for it, but other approaches are nowhere near ready as replacements/alternatives to CSP.
-
Also, fixating on the "CSP" label is silly; the spec includes many things, some useful, some not.
-
sure, I'm just asking people to spend more time on new ideas.
-
Great! FWIW you have something in your mail from just last week where I asked you for the same :)
- 1 more reply
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.