[webauthn] Merged Pull Request: Document prevention of attacks on privacy

emlun has just merged emlun's pull request 899 for https://github.com/w3c/webauthn:

== Document prevention of attacks on privacy ==
Fixes #743. Fixes #382.

#140 is related, but requires a normative requirement that authenticators make credential IDs look like opaque random data.


<!--
    This comment and the below content is programatically generated.
    You may add a comma-separated list of anchors you'd like a
    direct link to below (e.g. #idl-serializers, #idl-sequence):

    Don't remove this comment or modify anything below this line.
    If you don't want a preview generated for this pull request,
    just replace the whole of this comment's content by "no preview"
    and remove what's below.
-->
***
<a href="https://pr-preview.s3.amazonaws.com/w3c/webauthn/pull/899.html" title="Last updated on Jun 20, 2018, 5:06 PM GMT (48d6579)">Preview</a> | <a href="https://pr-preview.s3.amazonaws.com/w3c/webauthn/899/b3aa419...48d6579.html" title="Last updated on Jun 20, 2018, 5:06 PM GMT (48d6579)">Diff</a>

See https://github.com/w3c/webauthn/pull/899

Received on Thursday, 21 June 2018 09:59:43 UTC