Difference between revisions of "Create Content Security Policy test suite"
Line 31: | Line 31: | ||
- send a reply to bsterine | - send a reply to bsterine | ||
+ | |||
[rescheduled to Tue nov 4] | [rescheduled to Tue nov 4] | ||
... | ... |
Latest revision as of 09:31, 31 October 2008
Contents
Project Name
Create Content Security Policy test suite
Project Description
Adding Content Restrictions functionality to Firefox means that sites could restrict types of locations for loaded scripts and other unsafe content. The Content Security Policy is intended to mitigate a large class of Web Application Vulnerabilities: Cross Site Scripting. In order for this to be written properly, a full test suite is required, which can test such things as inline scripts, javascript URLs, all event handler attributes (onclick, etc), plugins, frames, data urls, and XBL.
Project Leader(s)
References: Content Security Policy, bug 411791, bug 390910
Resources: bsterne, dveditz, shaver Piratheep Mahenthiran
Project Contributor(s)
NOTE: only Project Leader(s) should add names here. You can’t add your own name to the Contributor list.
Project Details
...
Project News
[Blog | http://ptmahent-ccsp-seneca.blogspot.com]
oct 31
- talked to humph regarding the situation of the project
- send a reply to bsterine
[rescheduled to Tue nov 4] ...