BrioxorMorbide,

IIRC the proposal includes some crypto-handshake verification to make sure the attestor is who it claims to be, so no, apps can’t just fake it. Or, if some of those secret keys leak and apps use it, sites won’t accept it anymore.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • piracy@lemmy.dbzer0.com
  • localhost
  • All magazines
  • Loading…
    Loading the web debug toolbar…
    Attempt #