[Bug 17417] Define a security model for requesting access to the MIDIAccess interface

https://www.w3.org/Bugs/Public/show_bug.cgi?id=17417

--- Comment #20 from Chris Wilson <cwilso@gmail.com> ---
(In reply to comment #19)
> Regarding outputs: Ideally, for system default output (if it can be
> determined by the UA) you should not have to ask for permission. It's not
> really that different to using <audio autoplay>.

Which browsers have differing opinions of (autoplay without user interaction). 
But it is still a bit different, because you can write data that will overwrite
patches, etc. - as long as you have access to sysex.  Without it, all you could
do maliciously would be to switch to different patches, etc.

> I still think we need to have a bigger discussion about folding MIDIAccess
> into a single naviagator.midi. I think it would simplify the API.

Now would be a really really good time.  Can you make Thursday's call?

-- 
You are receiving this mail because:
You are on the CC list for the bug.

Received on Tuesday, 8 January 2013 20:11:18 UTC