postulo-chromium: the browser extension for Chromium-based browsers #17
Labels
No labels
accessibility
authentication
breaking change
bug
documentation
enhancement
interface
internationalisation
observability
security
tier
1
tier
2
tier
3
tier/4
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Blocks
Reference
Postulo/postulo#17
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Observation
What exists today
The capture API was built for this and has been waiting:
POST /api/v1/capturestakesurland an optionalhtml, and sending the page source lets Postulo capture a posting only visible to a signed-in reader while skipping the server-side fetch entirely (api/api.py,CaptureIn). The response carriesreview_url. The wiki page The capture API documents the token flow.docs/PLAN.mdlists the extension as "deliberately after v1"; this issue ends that.Shape
document.documentElement.outerHTMLthrough a content script injected on demand withscripting.executeScript— so no permission on every site, onlyactiveTab— post them to the configured instance, show the result (title, company, "read by") and a link to the review screen.storage.local, notstorage.sync: a token replicated across devices through a Google account is not what anyone expects of it. Test callsGET /api/v1/me.activeTab,scripting,storage, and the instance's origin as an optional host permission requested at configuration time (permissions.request({ origins: [...] })), because a manifest cannot list a URL it does not know yet. With the host permission granted, requests from the background are not subject to CORS, so Postulo needs no CORS configuration.read: a badge on the button when the current URL is already tracked; the application's status in the popup; attaching a document to an application from the page.web-ext, andpostulo-chromium/postulo-firefoxas the two published artefacts. The alternative is two repositories over a shared core; see the open question.Classification
Enhancement. A separate repository; changes nothing in Postulo. Not breaking.
Depends on
Nothing for capture: the API exists and is stable. #12 for the read features.
Open questions