Re: [web-nfc] obtain reading and push permission should be the same (#438)

Isn't pushing more powerful feature than reading? 

I think originally the idea was that reading policy could be more relaxed than writing policy.

Especially with signature records, we could apply browser origin policies against the URLs contained in the cert chain and/or the URL record in the message. I guess read and write scenarios could undergo different policies?

-- 
GitHub Notification of comment by zolkis
Please view or discuss this issue at https://github.com/w3c/web-nfc/issues/438#issuecomment-550327651 using your GitHub account

Received on Wednesday, 6 November 2019 14:14:55 UTC