Re: [w3c/payment-handler] Return origin of payment app in PaymentHandlerResponse data? (#217)

 The merchant is effectively in control of which payment apps it supports - so it can only be an “origin” from those PMIs the merchant lists (thus there is a mitigated risk). The modifiers already allow for custom offers to be made, without needing to further  compromise user privacy. And the methodName in the response tells the merchant which “origin” (via the PMI) handled the request. 

I’m wondering if the above addresses everything? 


-- 
You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub:
https://github.com/w3c/payment-handler/issues/217#issuecomment-333999838

Received on Tuesday, 3 October 2017 22:41:23 UTC