Re: [w3ctag/design-reviews] Same-origin prerendering triggered by speculationrules (#667)

We reviewed the six issues spun out from the TAG review at our face-to-face this week, and appreciate the thoughtful responses. We are happy to see this work move forward, with a few notes:

* We look forward to reviewing a completed Security & Privacy Considerations section including mitigations, in the future. (In particular, regarding your note in the questionnaire: "But the user agent's heuristics deciding whether to honor a prerender hint can potentially leak information.")
* We would like to see UA heuristics for prerendering developed publicly or even better in a standardised/normative way as a mitigation for some of the privacy concerns raised, or to discourage practices that may have a negative impact on end user control and choice. 
* I would like to reopen [#101](https://github.com/WICG/nav-speculation/issues/101) - I've left a comment to clarify my question, but this isn't blocking.

-- 
Reply to this email directly or view it on GitHub:
https://github.com/w3ctag/design-reviews/issues/667#issuecomment-1079120756
You are receiving this because you are subscribed to this thread.

Message ID: <w3ctag/design-reviews/issues/667/1079120756@github.com>

Received on Friday, 25 March 2022 15:07:20 UTC