Create an ABE rule file

Bug #769738 reported by François Marier
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
Libravatar (obsolete)
Fix Released
Low
François Marier

Bug Description

Noscript has proposed a new standard to enumerate and allow browsers to enforce the boundaries between web applications:

  http://noscript.net/abe/web-authors.html

This could be useful in Libravatar for:

- enforcing a referer of www.libravatar.org on /user/*
- preventing POST requests to www from other sites
- restricting the display of /uploaded/* to the crop page

Tags: abe security
Changed in libravatar:
assignee: nobody → François Marier (fmarier)
status: Confirmed → In Progress
Changed in libravatar:
status: In Progress → Fix Committed
Changed in libravatar:
status: Fix Committed → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.