Review request: Secure Payment Confirmation

Since Web Payment WG items apparently have been discussed in this forum (https://lists.w3.org/Archives/Public/public-webappsec/2018May/0002.html), I take the liberty to ask for a security and privacy review of https://www.w3.org/TR/secure-payment-confirmation/

To give you a head start I have made a fairly extensive review myself:
https://github.com/cyberphone/doc/blob/gh-pages/payments/review-secure-payment-confirmation.md

I'm particularly interested in hearing what you think about the handling of card data since it departs from most other systems I'm aware of.

thanx,
Anders

Received on Wednesday, 11 August 2021 02:32:19 UTC