mikewest / deprecating-document-domain
`document.domain` intentionally weakens the only security boundary we have. Perhaps we can dump it?
☆17Updated last year
Alternatives and similar repositories for deprecating-document-domain:
Users that are interested in deprecating-document-domain are comparing it to the libraries listed below
- Opaque Response Blocking (CORB++)☆35Updated 2 years ago
- Secure Contexts, but with _more_ secureness!☆20Updated 11 months ago
- Problem statement and basic mitigations for ephemeral fingerprinting on the web.☆21Updated 4 years ago
- Cookies should take scheme into account, just like every other storage mechanism on the web.☆16Updated 5 years ago
- A Modest Content Security Proposal☆40Updated 3 years ago
- Incrementally better cookies.☆22Updated 2 years ago
- `COEP: x-bikeshed-credentialless-unless-cors`☆28Updated 2 years ago
- ☆21Updated 3 years ago
- Fetch Metadata☆74Updated 2 weeks ago
- A proposal to partition :visited link history by top-level site and frame origin.☆25Updated 2 weeks ago
- User Interface Security and the Visibility API☆11Updated 4 years ago
- This is both a terrible and wonderful idea.☆11Updated 5 years ago
- ☆38Updated 3 years ago
- Discussion area for security aspects of ECMAScript☆64Updated 7 years ago
- Quirks Mode Standard☆32Updated last week
- [On hold for now] A mechanism for origins to set their origin-wide configuration in a central location☆34Updated 2 years ago
- Explainer and spec for the Content Indexing proposal☆29Updated 4 years ago
- Shorten (mangle) names in JavaScript code☆20Updated 6 years ago
- Homebrew formulae for ECMAScript engines☆14Updated 7 years ago
- Explainer for Schemeful Same-Site☆15Updated 4 years ago
- Safe Base64 encoding/decoding in pure JavaScript.☆17Updated this week
- ☆17Updated 7 years ago
- This is a tiny Chrome Extension that protects your from Clipboard XSS Attacks☆19Updated 10 years ago
- IRC bot to make github comments with relevant sections of Working Group Meeting IRC minutes. Running as @css-meeting-bot.☆14Updated 2 weeks ago
- Signature-based Resource Loading Restrictions☆36Updated 3 weeks ago
- WebAppSec Secure Contexts☆34Updated 2 months ago
- RFCs for changes to DevTools☆15Updated 5 years ago
- What is browser fingerprinting and how should specification authors address it.☆63Updated 3 weeks ago
- Test Utils Standard☆17Updated last year
- Test cases and harnesses for URL testing☆30Updated 8 years ago