Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

It's an interesting spec but it requires server-side changes.

I wish browsers would implement an 'application mode' which would require some kind of installation step and then open up more permissions to code from that domain.

Even if you get users to install Prism you can't make cross-domain requests, which seems crazy, as I could get you to install some other binary and have full control. (Air does allow cross domain requests.)



Careful; that sort of wish lead to ActiveX and the disaster that is Korean online banking.


The problem with ActiveX is that it was more promiscuous with it's permissions than a first year college student on free-drink night :-)

Opening up some additional permissions (using something like the Android permissions model) would be a touch more restrained.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: