A PSA about the security implications of Service Workers for multi-user sites: https://infrequently.org/2014/12/psa-service-workers-are-coming/ …
/cc @frgx @jaffathecake @metromoxie
-
-
@slightlylate: That seems like a good way to start with something new and uniquely powerful like this.@jaffathecake@KenjiBaheux -
@mikewest : Happy to have this conversation over VC. Setting the set of compatible hosts to zero is non-starter@jaffathecake@KenjiBaheux
End of conversation
New conversation -
-
-
@slightlylate: Anyway, not saying you're wrong or evil. You've thought about this a lot. Just not where I thought the thread ended. -
@mikewest : understood. Calendar me!
End of conversation
New conversation -
-
-
@slightlylate@mikewest@jaffathecake@KenjiBaheux "Real" does not mean "in the wild." Stop bad things from happening; don't react to them. -
@slightlylate@mikewest@jaffathecake@KenjiBaheux That's why there's a renderer sandbox. Otherwise we'd just "fix the bugs."
End of conversation
New conversation -
-
-
@slightlylate: A unique type would have forced servers to affirmatively opt-in to SW in a way CSP doesn't.@jaffathecake@KenjiBaheuxThanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
@slightlylate: I don't mean to claim you haven't thought about security, you clearly have. I appreciate that!@jaffathecake@KenjiBaheuxThanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.
& Web Standards TL; Blink API OWNER
Named PWAs w/
DMs open. Tweets my own; press@google.com for official comms.