Nice docs by @fugueish on service worker security considerations: https://sites.google.com/a/chromium.org/dev/Home/chromium-security/security-faq/service-worker-security-faq …
So if you're on a different network when connectivity is restored, you leak to site new IP address. Even if you never visit that site again.
-
-
You also leak to network operator that you previously visited that site due to DNS/SNI/etc. leaks.
-
Seems bad to permit this without user consent.
- 10 more replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.