Re: [mediacapture-screen-share] Avoid Hall-of-Mirrors (#209)

If the point of the security risk is that a site may use capture of itself to export arbitrary content under it's control, breaking cross-origin capture restrictions, this does nothing at all to address it.  A malicious app would of course not exclude the current tab, and would in fact give the user a reason for wanting to capture the current tab.

-- 
GitHub Notification of comment by jesup
Please view or discuss this issue at https://github.com/w3c/mediacapture-screen-share/issues/209#issuecomment-1050404687 using your GitHub account


-- 
Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config

Received on Friday, 25 February 2022 00:45:33 UTC