Hi Mozilla friends. Glad to see this proposal! As Richard mentions, we over on 
Chromium are working on a similar plan, albeit limited to "powerful features." 

I just wanted to mention that regarding subresource integrity 
(https://w3c.github.io/webappsec/specs/subresourceintegrity/), the general 
consensus over here is that we will not treat origins as secure if they are 
over HTTP but loaded with integrity. We believe that security includes 
confidentiality, which that would approach would lack.
--Joel
_______________________________________________
dev-platform mailing list
dev-platform@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-platform

Reply via email to