Re[2]: [webauthn] Cross-origin credential creation in iframes (#1656)

This is completely separate from Dirk's proposal.   I don't think that 
proposal has made its way to a pull request.  No one seems to be pushing 
it currently.

John B.

------ Original Message ------
From: "Felix Magedanz via GitHub" <sysbot+gh@w3.org>
To: public-webauthn@w3.org
Sent: 8/2/2021 4:58:42 AM
Subject: Re: [webauthn] Cross-origin credential creation in iframes 
(#1656)

>>b) per Dirk's proposal on payments. Allow a site in a full page redirect to create a non-discoverable credential for a third site. I see a lot of uses for that and would like to explore if there are any security/privacy issues with doing that.
>
>@ve7jtb Hi John, has there been any update on Dirk's proposal lately? May be an issue here that I missed so far? Thank you.
>
>-- GitHub Notification of comment by FlxMgdnz
>Please view or discuss this issue at https://github.com/w3c/webauthn/issues/1656#issuecomment-890853340 using your GitHub account
>
>
>-- Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config
>

Received on Monday, 2 August 2021 17:02:28 UTC