From 944dcac16691b5df4f78991237189fb831033169 Mon Sep 17 00:00:00 2001
From: Ade Bateman PaymentRequestUpdateEvent
Accept-Language headers, etc.)
- The spec should indicate how data might be passed securely through the API using - mechanisms such as field level encryption and message signing. While these may not - be standardised a reference to the payment method specifications would be appropriate - as well as some examples of how those specifcations might implement secure messaging. -
-+ This section is a placeholder to record security considerations as we gather them through working + group discussion. +
+ ThePaymentRequest API does not directly support encryption of data fields.
+ Individual payment methods may choose to include support for encrypted data but it is not
+ mandatory that all payment methods support this.
+
+