-
Notifications
You must be signed in to change notification settings - Fork 121
Closed
Labels
feature: product detailsRelated to adding or editing products, including Product Settings.Related to adding or editing products, including Product Settings.type: taskAn internally driven task.An internally driven task.
Description
We can use a nonce to authenticate the preview request for self-hosted sites. (You can see how WPiOS handles the preview nonce in its PreviewNonceHandler.)
- When we request the user's sites from the
/rest/v1.1/me/sitesendpoint, we can addframe_nonceto the list ofoptionsin the request. - We can save the nonce (a
String) in Core Data to use when we need it. - When we prepare the preview URL to display in the web view, if the site is self-hosted (not a WordPress.com store) we can add
?frame-nonce={FRAME_NONCE}to the URL.
Metadata
Metadata
Assignees
Labels
feature: product detailsRelated to adding or editing products, including Product Settings.Related to adding or editing products, including Product Settings.type: taskAn internally driven task.An internally driven task.