I have reviewed this document as part of the security directorate's ongoing effort to review all IETF documents being processed by the IESG. These comments were written primarily for the benefit of the security area directors. Document editors and WG chairs should treat these comments just like any other last call comments. Summary: Ready for publication as Informational This draft establishes a registry (specification required/expert review), and populates it with an initial set of values defined in and used by a w3c specification that is security-centric. Creating the registry introduces no new security concerns itself. One thing (not particularly security related) to consider: The BNF for directive-name, as copied into this draft, allows a directive name of -, or --, ---, etc. Are you expecting an expert to disallow these, or are they ok? Is the answer the same for the name 42?