Re: [web-nfc] Security review

Thank you for the review, Nathan. I will update the spec considering 
the comments and scenarios. 
For the added scenarios, you can also edit the Security doc and submit
 a PR. 
About the questions:
- service workers are not used ATM; see also #17. In principle, a page
 handling NFC should be visible and in focus.
- URL scope: indeed needs more thinking; could use #15 for discussion.
 Suggestions are welcome (understood that you'd prefer exact origin 
match).
- permissions: in principle there could be separate permission on tag 
write, tag read, and peer communication, but with the current API  
it's only for using NFC as a whole.

-- 
GitHub Notif of comment by zolkis
See https://github.com/w3c/web-nfc/issues/22#issuecomment-102491690

Received on Friday, 15 May 2015 18:58:24 UTC