Skip to content

Commit

Permalink
Update security and privacy self assesment documents
Browse files Browse the repository at this point in the history
Signed-off-by: Arnaud Mandy <arnaud.mandy@intel.com>
  • Loading branch information
arskama committed Dec 7, 2023
1 parent 2873936 commit 297be6e
Show file tree
Hide file tree
Showing 2 changed files with 9 additions and 2 deletions.
6 changes: 5 additions & 1 deletion security-privacy-self-assessment.html
Original file line number Diff line number Diff line change
Expand Up @@ -185,7 +185,8 @@ <h3 id="2-4-how-does-this-specification-deal-with-sensitive-information-">
first-party and third-party contexts?
</h3>
<p>
The specified API will not be available in third-party contexts.
The specified API will be available in third-part contexts via iframe
guarded by permission policy and focus requirements.
</p>
<h3 id=
"2-14-how-does-this-specification-work-in-the-context-of-a-user-agent-s-private-browsing-or-incognito-mode-">
Expand All @@ -202,6 +203,9 @@ <h3 id="2-4-how-does-this-specification-deal-with-sensitive-information-">
2.15. Does this specification have a "Security Considerations" and
"Privacy Considerations" section?
</h3>
<p>
Yes.
</p>
<h3 id=
"2-16-does-this-specification-allow-downgrading-default-security-characteristics-">
2.16. Does this specification allow downgrading default security
Expand Down
5 changes: 4 additions & 1 deletion security-privacy-self-assessment.md
Original file line number Diff line number Diff line change
Expand Up @@ -107,7 +107,8 @@ however, we think our mitigations would prevent this risk.

### 2.13. How does this specification distinguish between behavior in first-party and third-party contexts?

The specified API will not be available in third-party contexts.
The specified API will be available in third-part contexts via iframe
guarded by permission policy and focus requirements.

### 2.14. How does this specification work in the context of a user agent’s Private Browsing or "incognito" mode?

Expand All @@ -117,6 +118,8 @@ normal and Private Browsing modes.

### 2.15. Does this specification have a "Security Considerations" and "Privacy Considerations" section?

Yes.

### 2.16. Does this specification allow downgrading default security characteristics?

No.
Expand Down

0 comments on commit 297be6e

Please sign in to comment.