W3C home > Mailing lists > Public > whatwg@whatwg.org > February 2013

Re: [whatwg] Fetch: crossorigin="anonymous" and XMLHttpRequest

From: Adam Barth <w3c@adambarth.com>
Date: Tue, 26 Feb 2013 14:52:28 -0800
Message-ID: <CAJE5ia9_=cQsL5PP+r2Aq4-5gcjvs77Z+=ZLL4cbCNOgHsJ8ew@mail.gmail.com>
To: Anne van Kesteren <annevk@annevk.nl>
Cc: WHATWG <whatwg@whatwg.org>
WebKit hasn't implemented either, so we don't have any implementation
constraints in this area.

Adam


On Tue, Feb 26, 2013 at 3:35 AM, Anne van Kesteren <annevk@annevk.nl> wrote:
> There's an unfortunate mismatch currently. new
> XMLHttpRequest({anon:true}) will generate a request where a) origin is
> a globally unique identifier b) referrer source is the URL
> about:blank, and c) credentials are omitted. From those
> crossorigin="anonymous" only does c. Can we still change
> crossorigin="anonymous" to match the anonymous flag semantics of
> XMLHttpRequest or is it too late?
>
>
> --
> http://annevankesteren.nl/
Received on Tuesday, 26 February 2013 22:53:26 UTC

This archive was generated by hypermail 2.3.1 : Monday, 13 April 2015 23:09:20 UTC