New issue
Advanced search Search tips
Note: Color blocks (like or ) mean that a user may not be available. Tooltip shows the reason.

Issue 661677 link

Starred by 2 users

Issue metadata

Status: Archived
Owner:
Closed: Nov 2016
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Chrome
Pri: 1
Type: Feature

Blocking:
issue 656511



Sign in to add a comment

Public Session whitelisting - strip privacy and security sensitive data from webRequests in PS

Project Member Reported by isandrk@chromium.org, Nov 2 2016

Issue description

webRequest API exposes privacy and security sensitive data from the user in Public Sessions and this needs mitigation (clear RequestBody, RequestHeaders, ResponseHeaders, and strip URL down to origin).
 
Cc: krishna...@chromium.org
Cc: sduraisamy@chromium.org
Blocking: 656511
Status: Fixed (was: Started)
Fixed in https://codereview.chromium.org/2455393002

Comment 5 by dchan@google.com, May 30 2017

Labels: VerifyIn-60

Comment 6 by dchan@chromium.org, Aug 1 2017

Labels: VerifyIn-61

Comment 7 by dchan@chromium.org, Jan 22 2018

Status: Archived (was: Fixed)

Sign in to add a comment