Re: [w3c/payment-request] redact full shipping address from event until payment response (#648)

> This would probably become problematic, because the merchants could just request "all the things" even when they don't need them. Thus, it would put us back in the situation we are in today.

Sorry, to be clear, I meant "we" as in, "folks working on the spec," not "the merchants." As you mentioned, I think we're all on the same page now: we need to come up with the critical fields for shipping :).

A rough, US-centric pass:

Critical, based on USPS / UPS / FedEx postage price tools:
- country
- postalCode
- city (UPS / FedEx only)

Most likely unnecessary:
- sortingCode
- languageCode
- organization
- recipient
- phone

Ref:
- https://www.fedex.com/ratefinder/home?link=4&cc=US&language=en
- https://postcalc.usps.com/
- https://wwwapps.ups.com/calTimeCost?loc=emus%20
- https://www.ontrac.com/quickrates.asp


-- 
You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub:
https://github.com/w3c/payment-request/issues/648#issuecomment-348075313

Received on Thursday, 30 November 2017 03:53:41 UTC