It looks as though the spec uses two similar but different terms to describe the outcome of this check.
The correct one seems to be Does Not Prohibit Mixed Security Contexts (which matches the title of the section). I believe references to Restrict should be replaced with Prohibit
