- From: Nick Steele via GitHub <sysbot+gh@w3.org>
- Date: Wed, 21 Feb 2024 20:24:02 +0000
- To: public-webauthn@w3.org
The following commits were just pushed by nicksteele to https://github.com/w3c/webauthn: * Added a loophole for secure contexts not using https Clients today want to allow localhost on http, but are forbidden by spec due to scheme validation by Anders Åberg https://github.com/w3c/webauthn/commit/2a653decc794850743bb149fd919c81c10614b04 * Fixed bikeshedding by Anders Åberg https://github.com/w3c/webauthn/commit/66b792ddf2b69e4a074d226d77538de9e3c1fb49 * Trigger Build by Anders Åberg https://github.com/w3c/webauthn/commit/84055e6097dba51a331319078e3e8a4722858967 * remove pluralisation Co-authored-by: Emil Lundberg <emil@emlun.se> by Anders Åberg https://github.com/w3c/webauthn/commit/b4ce93ef1cd5e1da1862753bc60ad4ea691ed1c3 * Changed wording to spell out localhost by Anders Åberg https://github.com/w3c/webauthn/commit/85d28a3dc985e874c6a77356ac7629289ecfd7c6 * Editorial tweaks and links by Anders Åberg https://github.com/w3c/webauthn/commit/ec161c4c2810a9b884d0b6cc756689fbdd7c9cd4 * missed one by Anders Åberg https://github.com/w3c/webauthn/commit/9f8fa53883e4a36933e1241653535d656844e11f * Merge pull request #2018 from abergs/non-https-loophole Adding flexibility in client origin scheme validation to align with real world implementations by Nick Steele https://github.com/w3c/webauthn/commit/3c71812cfb6f2e295e9ea42e2ede9529820784b4 -- Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config
Received on Wednesday, 21 February 2024 20:24:03 UTC