-
Notifications
You must be signed in to change notification settings - Fork 21
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Clear-Site-Data and partitioning #66
Comments
Partitioning is going to affect a lot of specifications. Summarizing from that discussion, given 1st-party domain A and 3rd-party resource B:
These rules should not constrain what user agents allow users to do manually. I would argue that a user could tell a browser to "Forget about" site A and it would clear all 1st party A resources, 3rd parties partitioned under A, and also all A storage partitioned under B, C, etc. Other choices might be reasonable. |
Thanks for filing this, Anne! The linked issue has all the details. It boils down to one first party site having control over website data under another first party site which can be used to construct a joint user ID across websites. |
FWIW, I filed #68 as a result of that discussion. |
At some point the discussion at privacycg/storage-partitioning#11 will likely impact this document. It might be worth following if you're interested.
The text was updated successfully, but these errors were encountered: