← Back to context

Comment by mavhc

5 years ago

I'd assume the small percentage with a midi device who are going to music app websites would be more likely to know

Anyone can request MIDI permissions.

The parent comment implies a bad actor using the API for something like fingerprinting, and a common user who may have never even heard of MIDI, let alone have a device.

  • But won't the user then go "why would I allow this website to access something I don't know about?" or, if they clicked yes anyway, the entropy would be ~0 as they have no midi devices.

    This is assuming we moved to a model where more permissions had to be requested rather than just allowed