emceeaich: A close-up of a pair of cats-eye glasses (Default)
Emma Humphries ([personal profile] emceeaich) wrote in [site community profile] dw_suggestions 2012-08-28 08:08 am (UTC)

That is not what I said.

What I said, is that if there was a flaw in GitHub's code that propagated a XSS or CSRF, then we would have an exposure.

That is not the same as allowing arbitrary scripts which could be intentionally written with a XSS or CSRF vector.

Post a comment in response:

If you don't have an account you can create one now.
HTML doesn't work in the subject.
More info about formatting

If you are unable to use this captcha for any reason, please contact us by email at support@dreamwidth.org