Re: [manifest] Define identity of a web app (closes #272) (a2e8c31)

If the identity of an app is defined by a URL instead of an origin, doesn't that mean that the Web's permission/security model would break for installed Web apps? If you give one app permission to do something, and that is tied to the origin, wouldn't that mean that another app, on the same origin but with a different start URL, would be able to use that permission, too?

---
Reply to this email directly or view it on GitHub:
https://github.com/w3c/manifest/commit/a2e8c31ecda1ca7d5673a02e08698e5cf64b5df2#commitcomment-9242618

Received on Monday, 12 January 2015 15:02:05 UTC