[w3ctag/design-reviews] WG New Spec: FedCM—Support showing third-party iframe origins in the UI (Issue #1145)

cbiesinger created an issue (w3ctag/design-reviews#1145)

### Specification

https://github.com/w3c-fedid/FedCM/pull/774

### Explainer

https://github.com/w3c-fedid/FedCM/issues/449#issuecomment-1515631336

### Links

- The WG's request for this TAG review: n/a
- Previous early design review, if any: n/a
- An introduction to the feature, aimed at unfamiliar audiences: see the explainer as well as https://github.com/w3c-fedid/FedCM/issues/725
- A description of the problems that end-users were facing before this proposal: https://github.com/w3c-fedid/FedCM/issues/725
- Alternatives considered: See the explainer and the discussion in https://github.com/w3c-fedid/FedCM/issues/449#issuecomment-1515631336
- Examples of how to use the proposal to solve the end-users' problems: n/a
- What do the end-users experience with this proposal: The actual UI is browser-specific but in Chrome they will see a dialog title of "Sign in to iframe.com with google.com" with a subtitle of "on toplevel.com"
- User research you did to validate the problem and/or design, if any: n/a
- Web Platform Tests:  https://wpt.fyi/results/fedcm/third-party-iframe?label=master&label=experimental


### The specification

- [x] Follows the [Web Platform Design Principles](https://www.w3.org/TR/design-principles/).
- [x] Includes Security and Privacy Considerations sections based on answers to the [Security/Privacy Questionnaire](https://www.w3.org/TR/security-privacy-questionnaire/).

### Where and by whom is the work is being done?

- GitHub repo: https://github.com/w3c-fedid/FedCM
- Primary contacts:
   - Christian Biesinger (@cbiesinger), Google, feature author
   - Nicolás Peña Moreno (@npm1), Google, spec editor
- Organization/project driving the specification: Google
- This work is being funded by: Google
- Primary standards group developing this feature: W3C Federated identity working group
- Incubation and standards groups that have discussed the design: n/a
  - {{ABC CG}} <!-- Include a link to minutes or issues in this group if possible. -->
  - {{DEF WG}}


### Feedback so far

- Active horizontal reviews: n/a
- Multi-stakeholder feedback:
  - Chromium comments: n/a
  - Mozilla comments: comments from Martin Thompson and Ben Vandersloot in https://github.com/w3c-fedid/FedCM/issues/449 and https://github.com/w3c-fedid/FedCM/issues/725
  - WebKit comments: Webkit has not given feedback on this proposal
  - {{...include feedback/review from developers, implementers, civil society, and others}}
- Major unresolved issues with or opposition to this specification: n/a
- Status/issue trackers for implementations: https://chromestatus.com/guide/editall/5176474637959168


### You should also know that...

_No response_

<!-- Content below this is maintained by @w3c-tag-bot -->
---

Track conversations at https://tag-github-bot.w3.org/gh/w3ctag/design-reviews/1145


-- 
Reply to this email directly or view it on GitHub:
https://github.com/w3ctag/design-reviews/issues/1145
You are receiving this because you are subscribed to this thread.

Message ID: <w3ctag/design-reviews/issues/1145@github.com>

Received on Thursday, 4 September 2025 17:42:50 UTC