88
edits
(→Security: Update 1 for End of Q2 review - more later today.) |
(→Security: Update 2 for End of Q2 Security Review - Done) |
||
| Line 555: | Line 555: | ||
* SafeBrowsing Re-enable remote lookups for application reputation - {{bug|10900754}} | * SafeBrowsing Re-enable remote lookups for application reputation - {{bug|10900754}} | ||
------ Items above done before or during Q1 ------ | ------ Items above done before or during Q1 ------ | ||
* Security for DevTools: CSP (content-security policy) analysis in Dev Edition/Dev Tools - {{bug|1129999}}. | * Security for DevTools: CSP (content-security policy) analysis in Dev Edition/Dev Tools - {{bug|1129999}}. | ||
* CSP upgrade-insecure-requests - {{bug|1139297}}. | * CSP upgrade-insecure-requests - {{bug|1139297}}. | ||
* Support detecting potentially unwanted software in SafeBrowsing - {{bug|1147212}}. | |||
------ Items above done before or during Q2 ------ | ------ Items above done before or during Q2 ------ | ||
* Evolving Referrer Policy - Implement referrer attribute for navigation and embedding elements | * SRI (Sub-resource integrity) for 3rd party scripts and styles - {{bug|992096}}. | ||
* Evolving Referrer Policy - Implement referrer attribute for navigation and embedding elements - {{bug|999754}} and allow dynamic changes of referrer policies {{bug|1174915}}. | |||
* Containers for isolated non-private browsing sessions. | * Containers for isolated non-private browsing sessions. | ||
* | * Use a lock with a strikethrough for HTTP pages that have Password Fields in the Control Center - {{bug|1179961}}. | ||
* Tracking Protection enabled by default in Private Browsing Mode {{bug|1175606}}. | |||
------ Items above planned to be done before or during Q3 ------ | ------ Items above planned to be done before or during Q3 ------ | ||
* Security for DevTools: CSP (content-security policy) suggestions in Dev Edition/Dev Tools. | * Security for DevTools: CSP (content-security policy) suggestions in Dev Edition/Dev Tools. | ||
edits