canmove, Confirmed users
1,220
edits
(add pointer to secure storage metabug) |
Ptheriault (talk | contribs) (→User Interaction: adding more UX threats) |
||
Line 83: | Line 83: | ||
An abusive website could repeatedly invoke the payment request dialog and thus hold the user hostage until they pay. To prevent this, the proposed design will allow the user to close the whole tab while the Payment Request dialog is open. | An abusive website could repeatedly invoke the payment request dialog and thus hold the user hostage until they pay. To prevent this, the proposed design will allow the user to close the whole tab while the Payment Request dialog is open. | ||
It must be clear to the user which page initiated the payment. | |||
Web pages must not be able to interfere with the Payment Request dialog (such as overlaying content on top of the dialog, or forcing part of the dialog off screen) | |||
== Process Separation and Sandboxing == | == Process Separation and Sandboxing == |