Re: [OAUTH-WG] Security Topics | Incorporate in-browser communication security considerations | PR53

2022-10-27 Thread Christian Mainka
Hi, glad to hear that you like our work. If you have any questions or if we can do anything to help you with this, don't hesitate to ask. Best regards Christian On 26.10.22 17:13, Donna Chong Nee wrote: Hi, thanks so much. Will take my time amending this with some help. Smart E11 On

Re: [OAUTH-WG] Security Topics | Incorporate in-browser communication security considerations | PR53

2022-10-26 Thread Donna Chong Nee
Hi, thanks so much. Will take my time amending this with some help. Smart E11 On Thu, 27 Oct 2022, 02:16 Daniel Fett, wrote: > Hi Christian, > > thanks for bringing this to our attention! I think the recommendations in > the PR are very helpful and we will consider adding the text to the >

Re: [OAUTH-WG] Security Topics | Incorporate in-browser communication security considerations | PR53

2022-10-26 Thread Daniel Fett
Hi Christian, thanks for bringing this to our attention! I think the recommendations in the PR are very helpful and we will consider adding the text to the document. -Daniel Am 25.10.22 um 15:37 schrieb Christian Mainka: Hi, we would like to request the inclusion of _in-browser

[OAUTH-WG] Security Topics | Incorporate in-browser communication security considerations | PR53

2022-10-25 Thread Christian Mainka
Hi, we would like to request the inclusion of _in-browser communication security considerations_ in the OAuth security topics. We found that in-browser communications like the postMessage API is widely used by Clients and Authorization Servers as an alternative to the standardized HTTP