Re: [permissions] Options for "double-keying" permissions (#55)

To focus the discussion on the Permissions API, I think the API should mention that the rules regarding permissions should match the original spec if any. I don't think it's a good idea to have a general rule at this point. Some browsers (like Chrome) don't even have consistent rules between permissions. I'm open to the idea of having generic permission model for the web that is browser compatible but that's not something I'm particularly interested to invest time on because browsers have way too many reasons to behave one way or another (UI, privacy and security considerations).

For specific permissions, if a specification want to specify rules, I guess it's up to them to decide. Some for example, deny permissions for insecure origins.

---
Reply to this email directly or view it on GitHub:
https://github.com/w3c/permissions/issues/55#issuecomment-164735269

Received on Tuesday, 15 December 2015 11:29:01 UTC