Re: [w3c/webpayments] Finer points of integration with Web App Manifest (#225)

> However, I still think there is merit to being able to verify that the Android app you are talking to is the one that was signed by the right person.

It is a free world so please go ahead :-)  IMO, it doesn't matter if the payment app is "wrong" because it shouldn't have the "right" keys and the payment process would not go through.  There are already tons of related Apps out there building on this security concept which is independent of Web-browser versus Standalone usage.

-- 
You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub:
https://github.com/w3c/webpayments/issues/225#issuecomment-290326351

Received on Thursday, 30 March 2017 07:31:10 UTC