privacycg / storage-access

The Storage Access API
https://privacycg.github.io/storage-access/
199 stars 26 forks source link

State checks are inconsistent between rSA and hSA #134

Closed annevk closed 1 year ago

annevk commented 1 year ago

In particular the opaque origin check happens late in rSA but early in hSA. Discovered while discussing #132 as @johannhof made the reasonable argument that should happen jointly with the opaque origin check.