Skip to content

Incorrect form-action pre-navigation check text? #257

@christhompson

Description

@christhompson

I was checking the spec for the form-action directive and found the current description for the pre-navigation check appears to be mixed with the text for frame-ancestors. See https://w3c.github.io/webappsec-csp/#form-action-pre-navigate

this algorithm returns "Blocked" if one or more of the ancestors of target violate the frame-ancestors directive delivered with the response, and "Allowed" otherwise

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions