W3C home > Mailing lists > Public > public-webrtc-logs@w3.org > February 2017

Re: [webrtc-pc] Clarify reasoning behind and mitigation of privacy issues (PING review)

From: Harald Alvestrand via GitHub <sysbot+gh@w3.org>
Date: Tue, 07 Feb 2017 09:38:51 +0000
To: public-webrtc-logs@w3.org
Message-ID: <issue_comment.created-277947553-1486460328-sysbot+gh@w3.org>
Under same-origin policy, it should probably read "an origin cannot 
obtain data from another origin using the datachannel API without its 
cooperation".

This is so that we don't get hammered for inaccuracy - it's easy to 
set up a datachannel between two tabs in the same browser where the 
two tabs have different origins, but it requires the active 
cooperation of both origins.


-- 
GitHub Notification of comment by alvestrand
Please view or discuss this issue at 
https://github.com/w3c/webrtc-pc/issues/687#issuecomment-277947553 
using your GitHub account
Received on Tuesday, 7 February 2017 09:39:37 UTC

This archive was generated by hypermail 2.4.0 : Saturday, 6 May 2023 21:19:39 UTC