We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 82db3af commit 10794f7Copy full SHA for 10794f7
spec/index.bs
@@ -2045,8 +2045,6 @@ the <a http-header>Origin</a> header value is represented by the
2045
[=IDP=]-specific, the [=user agent=] cannot perform this check.
2046
</div>
2047
2048
-Note: An [=IDP=] should validate the nonce, if present, to prevent CSRF-style attacks.
2049
-
2050
The response body must be a JSON object that can be [=converted to an IDL value|converted=] to an {{IdentityProviderToken}} without an exception.
2051
2052
Every {{IdentityProviderToken}} is expected to have members with the following semantics:
0 commit comments