[Webkit-unassigned] [Bug 155773] New: CSP: Log deprecation warning for frame-src directive

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Tue Mar 22 15:51:45 PDT 2016


https://bugs.webkit.org/show_bug.cgi?id=155773

            Bug ID: 155773
           Summary: CSP: Log deprecation warning for frame-src directive
    Classification: Unclassified
           Product: WebKit
           Version: WebKit Local Build
          Hardware: All
                OS: All
            Status: NEW
          Severity: Normal
          Priority: P2
         Component: WebCore Misc.
          Assignee: webkit-unassigned at lists.webkit.org
          Reporter: dbates at webkit.org

The frame-src directive has been deprecated since CSP 2.0, <https://www.w3.org/TR/2015/CR-CSP2-20150721/#directive-frame-src>. Its replacement is the child-src directive. We should consider showing a console warning message when a Content Security Policy has a frame-src directive.

-- 
You are receiving this mail because:
You are the assignee for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.webkit.org/pipermail/webkit-unassigned/attachments/20160322/79c0bf51/attachment-0001.html>


More information about the webkit-unassigned mailing list