Pinned Repositories
cookie-incrementalism
Incrementally better cookies.
cookies-over-http-bad
Archived proposal from 2018. Perhaps the approach in mikewest/scheming-cookies will be more successful!
credentialmanagement
Credential Management
http-state-tokens
Incrementally better HTTP state management.
jslint-utils
Wrapper scripts for running JSLint locally, and for generating test reports for Hudson
nginx-static-etags
Nginx doesn't generate etags for static content. I'd like it to. Let's see if I can remember some C from college.
privacy-budget
securer-contexts
Secure Contexts, but with _more_ secureness!
tc39-proposal-literals
Literals could be different than non-literals.
vimroom
Simulating a vaguely WriteRoom-like environment in Vim.
mikewest's Repositories
mikewest/http-state-tokens
Incrementally better HTTP state management.
mikewest/privacy-budget
mikewest/cookie-incrementalism
Incrementally better cookies.
mikewest/securer-contexts
Secure Contexts, but with _more_ secureness!
mikewest/baseline-header
What if developers could opt-into better default behaviors en masse, forcing them to pick and choose the legacy risks they want to enable.
mikewest/content-security-policy
Personal draft of the Web Application Security WG's Content Security Policy specification.
mikewest/deprecating-document-domain
`document.domain` intentionally weakens the only security boundary we have. Perhaps we can dump it?
mikewest/static_gettext
`gettext` wrapper, enabling localization of static documents and websites.
mikewest/homedir
Public home directory files
mikewest/sanitizer-playground
A demonstration of the HTML Sanitizer API.
mikewest/deprecate-it
Deprecate it.
mikewest/mitigation-supply
Mitigations. Supplied.
mikewest/consider-deploying-corp
Consider deploying Cross-Origin Resource Policy.
mikewest/coop-by-default
Wouldn't it be nice if `Cross-Origin-Opener-Policy` was applied by default?
mikewest/embedding-requires-opt-in
Embedding a document (via `<iframe>`, etc) should require explicit opt-in from the embedee.
mikewest/mikewest.org
mikewest/isolated.website
It's an isolated website. Maybe yours should follow suit?
mikewest/mikewest.github.com
projects.mikewest.org
mikewest/privacy-policy-discovery
Policy documents should be discoverable.
mikewest/categorizing-capabilities
Apps fall into categories. Categories are bound to capabilities.
mikewest/injection-mitigated
`[InjectionMitigated]` WebIDL Attribute
mikewest/purposeful-permissions
mikewest/change-password-url
A Well-Known URL for Changing Passwords
mikewest/content
The content behind MDN Web Docs
mikewest/notes
TC39 meeting notes
mikewest/progress
A progress bar. Nothing interesting.
mikewest/scratchpad
mikewest/summernote
Super simple WYSIWYG editor
mikewest/timeliner
All your digital life on a single timeline, stored locally
mikewest/webidl
Web IDL