A web service can validate requests and still leak through an embedded page, an unsafe DOM sink, a changed remote script, or a log that keeps too much case data. Browser response controls, output handling, dependency review, and telemetry policy address different failure paths. None replaces authorization. The lessons make these boundaries concrete with a case-review application, staged rollout checks, and explicit notes about what a small snippet cannot enforce alone.
Topics in this track
- Embedding and Browser Capability Headers — Constrain framing, referrer disclosure, and browser features with response policy that matches the route.
- DOM Sinks and Trusted Content — Render untrusted strings as text and tightly control the rare path that needs authored HTML.
- Dependency Integrity and Update Window — Keep browser dependencies reproducible and review the code that changes between releases.
- Telemetry Minimization and Retention — Record operational signals without turning logs into a second store of private case content.
Prerequisite paths
Untrusted output: escape by context and constrain scripts; Environment Configuration and Secret Boundaries; Observability: connect user failure to a safe request trace.
Neighbor track
Typed Frontend and Component Platform.
Practice path
Build Project: private page trust review and check choices in Web Development: platform and trust contracts quiz.
Further connections
Data Retention, Export, and Erasure; Retention Inventory and Expiry Workflows.
Further connections
Camera and Microphone Capture and Track Cleanup; Clipboard and Share Activation Fallbacks.
Further connections
Privacy-Aware External Integrations; Third-Party Request and Script Inventory.
