FirefoxOS/New security model: Difference between revisions

Jump to navigation Jump to search
csp section done
(csp section done)
Line 89: Line 89:
   }
   }
</bugzilla>
</bugzilla>
Bug XXX - ensure script-src 'self' is restricted to inside the signed package
Bug XXX - default CSP for signed packaged content
Bug XXX - create CSP tests for signed packages
Bug XXX - investigate marketplace for apps that use CSP
Bug XXX- Ensure that SW code is contain within package
Bug XXX - ensure CSP actually prevents injecting inline script (through SW or otherwise)


=== Process isolation ===
=== Process isolation ===
canmove, Confirmed users
1,220

edits

Navigation menu