Re: [mediacapture-main] Spec does no handle fingerprinting related to exposing non default capture devices (#559)

As you mention, the spec already calls out the number of devices is a potential fingerprint. I believe the significance of outliers (fonts, dead pixels, uncommon configurations) is well known in the fingerprinting space, and can be assumed to have been understood the several times the fingerprinting surface of this API was discussed in the past, so I'm not sure this qualifies as new information.

FWIW, Firefox implements a `privacy.resistFingerprinting` preference used by the Tor browser (see [blog](https://www.ghacks.net/2018/03/01/a-history-of-fingerprinting-protection-in-firefox/) and [enumerateDevices specifics](https://bugzilla.mozilla.org/show_bug.cgi?id=1372073)), and was accomplished without changing or breaking the API.

-- 
GitHub Notification of comment by jan-ivar
Please view or discuss this issue at https://github.com/w3c/mediacapture-main/issues/559#issuecomment-455820747 using your GitHub account

Received on Saturday, 19 January 2019 22:32:08 UTC