[whatwg] In AppCache web apps, images from unpredictable domains won't load

Jonas Sicking jonas at sicking.cc
Mon Jul 6 13:28:20 PDT 2009


On Mon, Jul 6, 2009 at 11:46 AM, Aaron Whyte<awhyte at google.com> wrote:
> When a page is loaded from an AppCache, even when online, external resources
> such as images will not be loaded at all.
> If foo.com has an image <img src="http://bar.com/img.png" />, then according
> to the steps in
> http://www.whatwg.org/specs/web-apps/current-work/multipage/offline.html#changesToNetworkingModel
> it will fail the load for the resource.
> For example, someone with an Offline Gmail client would never be able to see
> cross-domain images in emails, even when completely online.
> There's no workaround in the current spec.

The workaround is for the gmail to download the images to gmails
servers and then serve them from a google domain. Not as simple as
simply being able to cache urls from other servers I agree, but doing
multi domain application caches is very complicated from a security
point of view so I think we wanted to stay clear of it for the first
iteration of the spec.

/ Jonas


More information about the whatwg mailing list