steimelchrome / document-pip-explainer

Explainer for the Document Picture-in-Picture API feature
11 stars 2 forks source link

consider threats of intrusion/annoyance #10

Open npdoty opened 2 years ago

npdoty commented 2 years ago

I know this proposal is at an early stage, but one immediate threat to consider is how this could be abused for a new class of pop-up ads or intrusive web elements.

We could review this further as it gets more detailed, but some initial questions:

yisibl commented 2 years ago

Yes, this can cause a proliferation of pop-up ads. I suggest there needs to be stricter permission controls.