Re: [mediacapture-main] Iframe sandboxing options for gUM

As described 
[above](https://github.com/w3c/mediacapture-main/issues/268#issuecomment-161580967)
 (which itself was a refinement of [another earlier 
comment](https://github.com/w3c/mediacapture-main/issues/268#issuecomment-161337256),
 the sandbox model is so restrictive by default (and with a growing & 
unbounded set of restrictions) that it is unlikely to be used; since 
using `getUserMedia` from an iframe from a different origin ought to 
be the exception rather than the norm, the model where it always has 
to be explicitly enabled seems a better match and to bring better 
protection to the user.

Now if current usage doesn't allow that change, it is reasonable to 
reconsider that approach; but it would be useful to have more details 
on what metrics tell us (if we have any)

-- 
GitHub Notification of comment by dontcallmedom
Please view or discuss this issue at 
https://github.com/w3c/mediacapture-main/issues/268#issuecomment-230998331
 using your GitHub account

Received on Thursday, 7 July 2016 06:56:39 UTC