3 ms·
> this design does require you to trust the web server hosting it (it could just send you JS to steal your password!) The author mentioned elsewhere in this th
by applecrazy 6y ago
> this design does require you to trust the web server hosting it (it could just send you JS to steal your password!)
The author mentioned elsewhere in this thread that it's all static and client-side, so if that was a concern, you could just clone the repo and just open the HTML file in your web browser (no web server needed!).
- XMPPwocky 6y agoYeah, but when you're sending files around, you've already sort of lost the UX battle. The suggestion of a data: URI might be a way to get guarantees similar to that of a static file, but in a URL.