Re: [webauthn] "JSON serialization" in makeCredential probably needs to be defined more clearly

> There is no such expectation.

Including by RPs?  How are you going to enforce that?  I expect RPs to
 end up with just such expectations, forcing implementations to 
de-facto converge on identical serializations....

This seems like a poster child for Postel's law, in fact: strictness 
in what you produce (the serialization) should lead to better interop 
here than allowing different serializations and hoping no one depends 
on the serialization details.

-- 
GitHub Notification of comment by bzbarsky
Please view or discuss this issue at 
https://github.com/w3c/webauthn/issues/274#issuecomment-259025841 
using your GitHub account

Received on Tuesday, 8 November 2016 02:17:21 UTC