FYI Private State Token API Permissions Policy Default Allowlist Wildcard #990
Labels
Focus: Security (complete)
Resolution: satisfied with concerns
The TAG is satisfied with this work overall but requires changes
security-tracker
Group bringing to attention of security, or tracked by the security Group but not needing response.
Topic: security features
Milestone
こんにちは TAG-さん!
I'm requesting a TAG review of Private State Token API Permissions Policy Default Allowlist Wildcard.
Access to the Private State Token API is gated by Permissions Policy features. We proposed to update the default allowlist for both
private-state-token-issuance
andprivate-state-token-redemption
features from self to * (wildcard).Further details:
Past Evaluation: #414
The text was updated successfully, but these errors were encountered: