Re: [webauthn] makeCredential should be more precise than NotAllowedError in its last step

Just to add a bit of historical context, the current behavior is an attempt to balance providing feedback to the RP with maintaining privacy for the user. Might be a useful exercise to think through what's the most an RP can infer from the differences between these errors.

-- 
GitHub Notification of comment by vijaybh
Please view or discuss this issue at https://github.com/w3c/webauthn/issues/376#issuecomment-286663402 using your GitHub account

Received on Wednesday, 15 March 2017 07:35:50 UTC