Re: [whatwg/fetch] From-Origin (#687)

https://github.com/whatwg/html/issues/2792 (and there's also https://github.com/w3c/webauthn/issues/873, raised much later by me). The motivation isn't clearly stated there, but it's to reduce the impact of having a broader scope than the same-origin policy, which is the more fundamental security boundary, but tightening down the ports as well if at least is the default port.

-- 
You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub:
https://github.com/whatwg/fetch/issues/687#issuecomment-392841299

Received on Tuesday, 29 May 2018 16:28:23 UTC