Skip to content

Define a breaking-change process for Apps security and CSP behavior #669

@idosal

Description

@idosal

Problem

Several active Apps discussions suggest broad-breaking changes (e.g., security-sensitive CSP issues), which would require coordination among several hosts and hundreds of apps.

Examples:

The spec doesn't have a defined process for introducing breaking changes, which may require broader migration planning, host coordination, compatibility windows, or versioning.

Why this matters

The spec's ability to evolve is limited so long as we're unable to change the behavior in a responsible manner.

Desired Outcome

Define a process that allows hosts and servers to reasonably adopt spec changes without breaking.

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions