[cap-talk] Webkeys vs. the web

Raoul Duke raould at gmail.com
Fri Apr 10 14:25:34 EDT 2009


> Therefore, I will encourage people writing Tahoe frontends to leave
> read-only caps in the URL but to sequested write-caps behind some
> other user action, such as "click this button to generate a write cap".

but isn't the problem then only slightly deferred, to when that write
cap gets out as text somewhere? what makes it clear that it is a
dangerous write app to somebody who is copy/pasting it?

sincerely.


More information about the cap-talk mailing list