Skip to content

Commit e61b2d9

Browse files
committed
Update summary.json
1 parent 3441305 commit e61b2d9

2 files changed

Lines changed: 273 additions & 0 deletions

File tree

summary-data.json

Lines changed: 225 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -87318,5 +87318,230 @@
8731887318
"performed_via_github_app": null,
8731987319
"state_reason": null,
8732087320
"pinned_comment": null
87321+
},
87322+
{
87323+
"url": "https://api.github.com/repos/WebKit/standards-positions/issues/643",
87324+
"repository_url": "https://api.github.com/repos/WebKit/standards-positions",
87325+
"labels_url": "https://api.github.com/repos/WebKit/standards-positions/issues/643/labels{/name}",
87326+
"comments_url": "https://api.github.com/repos/WebKit/standards-positions/issues/643/comments",
87327+
"events_url": "https://api.github.com/repos/WebKit/standards-positions/issues/643/events",
87328+
"html_url": "https://github.com/WebKit/standards-positions/issues/643",
87329+
"id": 4175355350,
87330+
"node_id": "I_kwDOHk513M743t3W",
87331+
"number": 643,
87332+
"title": "Transferable streams",
87333+
"user": {
87334+
"login": "skeet70",
87335+
"id": 1424117,
87336+
"node_id": "MDQ6VXNlcjE0MjQxMTc=",
87337+
"avatar_url": "https://avatars.githubusercontent.com/u/1424117?v=4",
87338+
"gravatar_id": "",
87339+
"url": "https://api.github.com/users/skeet70",
87340+
"html_url": "https://github.com/skeet70",
87341+
"followers_url": "https://api.github.com/users/skeet70/followers",
87342+
"following_url": "https://api.github.com/users/skeet70/following{/other_user}",
87343+
"gists_url": "https://api.github.com/users/skeet70/gists{/gist_id}",
87344+
"starred_url": "https://api.github.com/users/skeet70/starred{/owner}{/repo}",
87345+
"subscriptions_url": "https://api.github.com/users/skeet70/subscriptions",
87346+
"organizations_url": "https://api.github.com/users/skeet70/orgs",
87347+
"repos_url": "https://api.github.com/users/skeet70/repos",
87348+
"events_url": "https://api.github.com/users/skeet70/events{/privacy}",
87349+
"received_events_url": "https://api.github.com/users/skeet70/received_events",
87350+
"type": "User",
87351+
"user_view_type": "public",
87352+
"site_admin": false
87353+
},
87354+
"labels": [],
87355+
"state": "open",
87356+
"locked": false,
87357+
"assignees": [],
87358+
"milestone": null,
87359+
"comments": 1,
87360+
"created_at": "2026-03-31T03:04:47Z",
87361+
"updated_at": "2026-03-31T03:15:58Z",
87362+
"closed_at": null,
87363+
"assignee": null,
87364+
"author_association": "NONE",
87365+
"type": null,
87366+
"active_lock_reason": null,
87367+
"sub_issues_summary": {
87368+
"total": 0,
87369+
"completed": 0,
87370+
"percent_completed": 0
87371+
},
87372+
"issue_dependencies_summary": {
87373+
"blocked_by": 0,
87374+
"total_blocked_by": 0,
87375+
"blocking": 0,
87376+
"total_blocking": 0
87377+
},
87378+
"body": "### WebKittens\n\n_No response_\n\n### Title of the proposal\n\ncan streams be transferred via postMessage()?\n\n### URL to the spec\n\nhttps://streams.spec.whatwg.org\n\n### URL to the spec's repository\n\nhttps://github.com/whatwg/streams\n\n### Issue Tracker URL\n\n_No response_\n\n### Explainer URL\n\nhttps://github.com/whatwg/streams/blob/master/transferable-streams-explainer.md\n\n### TAG Design Review URL\n\nhttps://github.com/w3ctag/design-reviews/issues/551\n\n### Mozilla standards-positions issue URL\n\nhttps://github.com/mozilla/standards-positions/issues/430\n\n### WebKit Bugzilla URL\n\n_No response_\n\n### Radar URL\n\n_No response_\n\n### Description\n\nThe specific subsections of the spec are:\n- https://streams.spec.whatwg.org/#rs-transfer\n- https://streams.spec.whatwg.org/#ws-transfer\n- https://streams.spec.whatwg.org/#ts-transfer\n- https://streams.spec.whatwg.org/#transferrable-streams\n\nAccording to [caniuse](https://caniuse.com/wf-transferable-streams) the other major browsers added support between 2020-2022. I didn't see a tracking issue for it here and it seems like a notable omission, apologies if I missed it while searching.",
87379+
"closed_by": null,
87380+
"reactions": {
87381+
"url": "https://api.github.com/repos/WebKit/standards-positions/issues/643/reactions",
87382+
"total_count": 0,
87383+
"+1": 0,
87384+
"-1": 0,
87385+
"laugh": 0,
87386+
"hooray": 0,
87387+
"confused": 0,
87388+
"heart": 0,
87389+
"rocket": 0,
87390+
"eyes": 0
87391+
},
87392+
"timeline_url": "https://api.github.com/repos/WebKit/standards-positions/issues/643/timeline",
87393+
"performed_via_github_app": null,
87394+
"state_reason": null,
87395+
"pinned_comment": null
87396+
},
87397+
{
87398+
"url": "https://api.github.com/repos/WebKit/standards-positions/issues/644",
87399+
"repository_url": "https://api.github.com/repos/WebKit/standards-positions",
87400+
"labels_url": "https://api.github.com/repos/WebKit/standards-positions/issues/644/labels{/name}",
87401+
"comments_url": "https://api.github.com/repos/WebKit/standards-positions/issues/644/comments",
87402+
"events_url": "https://api.github.com/repos/WebKit/standards-positions/issues/644/events",
87403+
"html_url": "https://github.com/WebKit/standards-positions/issues/644",
87404+
"id": 4179200538,
87405+
"node_id": "I_kwDOHk513M75GYoa",
87406+
"number": 644,
87407+
"title": "Compression Dictionary support for cross-origin no-cors requests",
87408+
"user": {
87409+
"login": "pmeenan",
87410+
"id": 444165,
87411+
"node_id": "MDQ6VXNlcjQ0NDE2NQ==",
87412+
"avatar_url": "https://avatars.githubusercontent.com/u/444165?v=4",
87413+
"gravatar_id": "",
87414+
"url": "https://api.github.com/users/pmeenan",
87415+
"html_url": "https://github.com/pmeenan",
87416+
"followers_url": "https://api.github.com/users/pmeenan/followers",
87417+
"following_url": "https://api.github.com/users/pmeenan/following{/other_user}",
87418+
"gists_url": "https://api.github.com/users/pmeenan/gists{/gist_id}",
87419+
"starred_url": "https://api.github.com/users/pmeenan/starred{/owner}{/repo}",
87420+
"subscriptions_url": "https://api.github.com/users/pmeenan/subscriptions",
87421+
"organizations_url": "https://api.github.com/users/pmeenan/orgs",
87422+
"repos_url": "https://api.github.com/users/pmeenan/repos",
87423+
"events_url": "https://api.github.com/users/pmeenan/events{/privacy}",
87424+
"received_events_url": "https://api.github.com/users/pmeenan/received_events",
87425+
"type": "User",
87426+
"user_view_type": "public",
87427+
"site_admin": false
87428+
},
87429+
"labels": [],
87430+
"state": "open",
87431+
"locked": false,
87432+
"assignees": [],
87433+
"milestone": null,
87434+
"comments": 0,
87435+
"created_at": "2026-03-31T13:25:49Z",
87436+
"updated_at": "2026-03-31T13:26:39Z",
87437+
"closed_at": null,
87438+
"assignee": null,
87439+
"author_association": "NONE",
87440+
"type": null,
87441+
"active_lock_reason": null,
87442+
"sub_issues_summary": {
87443+
"total": 0,
87444+
"completed": 0,
87445+
"percent_completed": 0
87446+
},
87447+
"issue_dependencies_summary": {
87448+
"blocked_by": 0,
87449+
"total_blocked_by": 0,
87450+
"blocking": 0,
87451+
"total_blocking": 0
87452+
},
87453+
"body": "### WebKittens\n\n@annekv\n\n### Title of the proposal\n\nCompression Dictionary support for cross-origin no-cors requests\n\n### URL to the spec\n\nhttps://fetch.spec.whatwg.org/\n\n### URL to the spec's repository\n\nhttps://github.com/whatwg/fetch\n\n### Issue Tracker URL\n\n_No response_\n\n### Explainer URL\n\n_No response_\n\n### TAG Design Review URL\n\nhttps://github.com/w3ctag/design-reviews/issues/1203\n\n### Mozilla standards-positions issue URL\n\nhttps://github.com/mozilla/standards-positions/issues/1381\n\n### WebKit Bugzilla URL\n\n_No response_\n\n### Radar URL\n\n_No response_\n\n### Description\n\nThis is a change to [Compression Dictionary Transport](https://github.com/WebKit/standards-positions/issues/160) that we talked about during the [fetch spec integration](https://github.com/whatwg/fetch/pull/1854) for the browser-specific CORS readability issues that are not covered by the [RFC](https://datatracker.ietf.org/doc/rfc9842/).\n\nCurrent WPT's and Chrome's implementation do not allow dictionary compression for cross-origin no-cors requests to prevent oracle attacks (and clients don't send the Accept-Encoding or dictionary headers for those requests).\n\nAt TPAC 2025 in the TAG general discussion, we came up with a solution of leveraging the existing `Cross-Origin-Resource-Policy: cross-origin` response header to flag responses that don't need protection from oracle attacks (the current use for this header) since they contain only public data.\n\nThe current PR for the Compression Dictionary Transport spec integration into fetch includes the change but it was not part of the original WPT's or implementations so I wanted to get buy-in on the change (and provide notice for the in-flight implementation work).\n\nIf we ever want to enable dictionary compression for some no-cors requests, now is the time to do it before there are widespread deployments. \n\nThe only risk is if there are resources that are used in both same-origin and cross-origin no-cors contexts and the origin currently supports compression dictionary transport but does not have the CORP response header on the responses, it will start to fail if they are not limiting dictionary support to same-origin responses (required by the RFC but unlikely someone would notice since they don't get the headers currently if it's not supported).\n\nGoing forward it wouldn't be a problem because the issue would be discovered at the time of deployment rather that with a browser change to existing production traffic.\n\nThere aren't any deployments that I'm aware of that have that problem but the risk of it happening increases over time with more dictionary deployments, limiting the chances of making the change in the future.\n\nThe alternative would be to not allow dictionary compression for any cross-origin no-cors requests independent of the content which would be cleaner for sites since they'd never get the dictionary request headers but it also limits the ability for third-party script embeds to use dictionary compression.",
87454+
"closed_by": null,
87455+
"reactions": {
87456+
"url": "https://api.github.com/repos/WebKit/standards-positions/issues/644/reactions",
87457+
"total_count": 0,
87458+
"+1": 0,
87459+
"-1": 0,
87460+
"laugh": 0,
87461+
"hooray": 0,
87462+
"confused": 0,
87463+
"heart": 0,
87464+
"rocket": 0,
87465+
"eyes": 0
87466+
},
87467+
"timeline_url": "https://api.github.com/repos/WebKit/standards-positions/issues/644/timeline",
87468+
"performed_via_github_app": null,
87469+
"state_reason": null,
87470+
"pinned_comment": null
87471+
},
87472+
{
87473+
"url": "https://api.github.com/repos/WebKit/standards-positions/issues/645",
87474+
"repository_url": "https://api.github.com/repos/WebKit/standards-positions",
87475+
"labels_url": "https://api.github.com/repos/WebKit/standards-positions/issues/645/labels{/name}",
87476+
"comments_url": "https://api.github.com/repos/WebKit/standards-positions/issues/645/comments",
87477+
"events_url": "https://api.github.com/repos/WebKit/standards-positions/issues/645/events",
87478+
"html_url": "https://github.com/WebKit/standards-positions/issues/645",
87479+
"id": 4181641096,
87480+
"node_id": "I_kwDOHk513M75PseI",
87481+
"number": 645,
87482+
"title": "Device Memory",
87483+
"user": {
87484+
"login": "tunetheweb",
87485+
"id": 10931297,
87486+
"node_id": "MDQ6VXNlcjEwOTMxMjk3",
87487+
"avatar_url": "https://avatars.githubusercontent.com/u/10931297?v=4",
87488+
"gravatar_id": "",
87489+
"url": "https://api.github.com/users/tunetheweb",
87490+
"html_url": "https://github.com/tunetheweb",
87491+
"followers_url": "https://api.github.com/users/tunetheweb/followers",
87492+
"following_url": "https://api.github.com/users/tunetheweb/following{/other_user}",
87493+
"gists_url": "https://api.github.com/users/tunetheweb/gists{/gist_id}",
87494+
"starred_url": "https://api.github.com/users/tunetheweb/starred{/owner}{/repo}",
87495+
"subscriptions_url": "https://api.github.com/users/tunetheweb/subscriptions",
87496+
"organizations_url": "https://api.github.com/users/tunetheweb/orgs",
87497+
"repos_url": "https://api.github.com/users/tunetheweb/repos",
87498+
"events_url": "https://api.github.com/users/tunetheweb/events{/privacy}",
87499+
"received_events_url": "https://api.github.com/users/tunetheweb/received_events",
87500+
"type": "User",
87501+
"user_view_type": "public",
87502+
"site_admin": false
87503+
},
87504+
"labels": [],
87505+
"state": "open",
87506+
"locked": false,
87507+
"assignees": [],
87508+
"milestone": null,
87509+
"comments": 1,
87510+
"created_at": "2026-03-31T19:05:56Z",
87511+
"updated_at": "2026-04-01T02:26:04Z",
87512+
"closed_at": null,
87513+
"assignee": null,
87514+
"author_association": "NONE",
87515+
"type": null,
87516+
"active_lock_reason": null,
87517+
"sub_issues_summary": {
87518+
"total": 0,
87519+
"completed": 0,
87520+
"percent_completed": 0
87521+
},
87522+
"issue_dependencies_summary": {
87523+
"blocked_by": 0,
87524+
"total_blocked_by": 0,
87525+
"blocking": 0,
87526+
"total_blocking": 0
87527+
},
87528+
"body": "### WebKittens\n\n@rniwa @othermaciej\n\n### Title of the proposal\n\nDevice Memory\n\n### URL to the spec\n\nhttps://www.w3.org/TR/device-memory/\n\n### URL to the spec's repository\n\nhttps://github.com/w3c/device-memory/\n\n### Issue Tracker URL\n\n_No response_\n\n### Explainer URL\n\n_No response_\n\n### TAG Design Review URL\n\nhttps://github.com/w3ctag/design-reviews/issues/190\n\n### Mozilla standards-positions issue URL\n\nhttps://groups.google.com/g/mozilla.dev.platform/c/cfydu35XdnY/m/3IqYn0oJAQAJ\n\n### WebKit Bugzilla URL\n\nhttps://bugs.webkit.org/show_bug.cgi?id=199084\n\n### Radar URL\n\n_No response_\n\n### Description\n\nMoving this over from this issue on the repo: https://github.com/w3c/device-memory/issues/24 as doing some housekeeping over there.\n\n@rniwa previously opened that issue with:\n\n> We don't support this API because:\n>\n> - RAM is not a direct estimate of whether the device can run a website with good performance - Some generations of iPads, for example, has an old generation CPU with more RAM.\n> - Amount of RAM device has is no indicative of how much RAM a website can use - the amount of memory WebContent process can use is > limited by a number of variables beyond just the amount that's physically available on a given device.\n> - It adds a new reliable fingerprinting surface - 100% reliability to disambiguate one device from another based on RAM size is a new fingerprinting surface we don't want to add.\n\nLet me know if this opinion has changed, but even if not, it's better to have the position listed in this repo IMHO. In which case feel free to close this issue with the appropriate labels.\n\nFrom the Chrome point of view, I'd reply to above comments with:\n\n> - RAM is not a direct estimate of whether the device can run a website with good performance - Some generations of iPads, for example, has an old generation CPU with more RAM.\n\nAgreed, but it is one of the more important signals. In my own experience [there is a clear correlation with Device Memory and web performance](https://www.smashingmagazine.com/2022/03/signals-customizing-website-user-experience/#device-capability-signals). \n\nDiscussions with multiple RUM providers, when I recently worked on updating the limits in Chrome, have shown the same correlations.\n\n> - Amount of RAM device has is no indicative of how much RAM a website can use - the amount of memory WebContent process can use is > limited by a number of variables beyond just the amount that's physically available on a given device.\n\nI also agree to a point. Again, this is one signal.\n\nWe see two use cases for this API\u2014both of which we hear successful use of in the wild:\n- To adapt website capabilities for lower end, or higher end. Often sites choose a cut off (e.g. below 2GB gets a lite version), rather than fine tune to every value. But different sites may choose different \"cut offs\" so a low/high signal is less useful here.\n- To explain performance metrics for analytics (e.g. there is an decrease in performance despite no changes, but this correlates with an increase in users with lower RAM \u2014 the reason for the degradation can therefore be explained).\n\n> - It adds a new reliable fingerprinting surface - 100% reliability to disambiguate one device from another based on RAM size is a new fingerprinting surface we don't want to add.\n\nThe values are coarsened and capped to reduce the risk of finger printing. Recent updates to the spec give the user-agent control over how to cap the values exposed. In the [Webkit bug](https://bugs.webkit.org/show_bug.cgi?id=199084) @othermaciej suggested:\n\n> Maybe we could expose 2GB as a fixed value for macOS, iOS and iPadOS devices, since all currently supported models would likely meet the true \"high end\" criteria.\n\nThat would now be permitted by the updated spec. An extreme interpretation of the capping, but permitted none-the-less. Though in these days you may wish to choose a higher value than 2GB and review that over time.\n\nThanks for your consideration.\n",
87529+
"closed_by": null,
87530+
"reactions": {
87531+
"url": "https://api.github.com/repos/WebKit/standards-positions/issues/645/reactions",
87532+
"total_count": 0,
87533+
"+1": 0,
87534+
"-1": 0,
87535+
"laugh": 0,
87536+
"hooray": 0,
87537+
"confused": 0,
87538+
"heart": 0,
87539+
"rocket": 0,
87540+
"eyes": 0
87541+
},
87542+
"timeline_url": "https://api.github.com/repos/WebKit/standards-positions/issues/645/timeline",
87543+
"performed_via_github_app": null,
87544+
"state_reason": null,
87545+
"pinned_comment": null
8732187546
}
8732287547
]

summary.json

Lines changed: 48 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -10603,5 +10603,53 @@
1060310603
"mozilla": "https://github.com/mozilla/standards-positions/issues/1380",
1060410604
"bugzilla": null,
1060510605
"radar": null
10606+
},
10607+
{
10608+
"id": "https://github.com/WebKit/standards-positions/issues/643",
10609+
"position": null,
10610+
"venues": [],
10611+
"concerns": [],
10612+
"topics": [],
10613+
"title": "can streams be transferred via postMessage()?",
10614+
"url": "https://streams.spec.whatwg.org",
10615+
"github": "https://github.com/whatwg/streams",
10616+
"issues": null,
10617+
"explainer": "https://github.com/whatwg/streams/blob/master/transferable-streams-explainer.md",
10618+
"tag": "https://github.com/w3ctag/design-reviews/issues/551",
10619+
"mozilla": "https://github.com/mozilla/standards-positions/issues/430",
10620+
"bugzilla": null,
10621+
"radar": null
10622+
},
10623+
{
10624+
"id": "https://github.com/WebKit/standards-positions/issues/644",
10625+
"position": null,
10626+
"venues": [],
10627+
"concerns": [],
10628+
"topics": [],
10629+
"title": "Compression Dictionary support for cross-origin no-cors requests",
10630+
"url": "https://fetch.spec.whatwg.org/",
10631+
"github": "https://github.com/whatwg/fetch",
10632+
"issues": null,
10633+
"explainer": null,
10634+
"tag": "https://github.com/w3ctag/design-reviews/issues/1203",
10635+
"mozilla": "https://github.com/mozilla/standards-positions/issues/1381",
10636+
"bugzilla": null,
10637+
"radar": null
10638+
},
10639+
{
10640+
"id": "https://github.com/WebKit/standards-positions/issues/645",
10641+
"position": null,
10642+
"venues": [],
10643+
"concerns": [],
10644+
"topics": [],
10645+
"title": "Device Memory",
10646+
"url": "https://www.w3.org/TR/device-memory/",
10647+
"github": "https://github.com/w3c/device-memory/",
10648+
"issues": null,
10649+
"explainer": null,
10650+
"tag": "https://github.com/w3ctag/design-reviews/issues/190",
10651+
"mozilla": "https://groups.google.com/g/mozilla.dev.platform/c/cfydu35XdnY/m/3IqYn0oJAQAJ",
10652+
"bugzilla": "https://bugs.webkit.org/show_bug.cgi?id=199084",
10653+
"radar": null
1060610654
}
1060710655
]

0 commit comments

Comments
 (0)