First Public Working Drafts: CSP: Cookie Controls; Embedded Enforcement
The Web Application Security Working Group has published two Working Drafts:
- Content Security Policy: Cookie Controls: This document defines mechanisms by which web developers can limit the ways in which cookies may be set in the context of their sites and applications.
- Content Security Policy: Embedded Enforcement: This document defines a mechanism by which a web page can embed a nested browsing context if and only if it agrees to enforce a particular set of restrictions upon itself.