@rysiek
It was just starting to be. The approach we were poking at would have been a browser plugin that let you do cert pinning for SRI, possibly with some kind of certificate transparency style system for the SRI hashes that have been seen. There are a lot of devils and details, but I think it could have both worked and likely turned into a standard, eliminating the need for the plugin and letting it lift the whole ecosystem.
Embed Notice
HTML Code
Corresponding Notice
- Embed this notice
Eleanor Saitta (dymaxion@infosec.exchange)'s status on Tuesday, 03-Dec-2024 09:15:00 JST Eleanor Saitta