solid / web-access-control-spec

Web Access Control (WAC)
https://solid.github.io/web-access-control-spec/
MIT License
121 stars 25 forks source link

Append to container for resources creation not reflected in current text #98

Closed RubenVerborgh closed 11 months ago

elf-pavlik commented 2 years ago

However, this leaves the case of POST, where you only need permissions on the container.

Solid Application Interoperability makes minimal use of LDN inbox, used as access inbox. It is only used before agents establish reciprocal Social Agent Registrations and create Solid Notifications subscriptions (switching to an 'outbox' approach).

I don't see how the access should be set on the Container used as the Access Inbox, we have the following expectations:

LDN Sender is any acl:AuthenticatedAgent

While statement with ldp:contains is added to the description of the container, they are not added by the client and the client is not the party modifying the container description.

In other words