File: google_accounts_private_api_extension.mojom

package info (click to toggle)
chromium 139.0.7258.127-1
  • links: PTS, VCS
  • area: main
  • in suites:
  • size: 6,122,068 kB
  • sloc: cpp: 35,100,771; ansic: 7,163,530; javascript: 4,103,002; python: 1,436,920; asm: 946,517; xml: 746,709; pascal: 187,653; perl: 88,691; sh: 88,436; objc: 79,953; sql: 51,488; cs: 44,583; fortran: 24,137; makefile: 22,147; tcl: 15,277; php: 13,980; yacc: 8,984; ruby: 7,485; awk: 3,720; lisp: 3,096; lex: 1,327; ada: 727; jsp: 228; sed: 36
file content (27 lines) | stat: -rw-r--r-- 1,475 bytes parent folder | download | duplicates (11)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
// Copyright 2023 The Chromium Authors
// Use of this source code is governed by a BSD-style license that can be
// found in the LICENSE file.

module chrome.mojom;

// API exposed by the browser process to the renderer process, so that the
// browser process can react to private Google Accounts JS API injected through
// the renderer.
// This API should only be used in the context of accounts.google.com pages with
// checks on both sides of the bridge, renderer and browser for extra safety.
interface GoogleAccountsPrivateApiExtension {
  // Registers an OAuth consent result with the browser process. The user
  // consent grants one or more Google API permissions to a Chrome extension
  // that requested the user consent.
  // A `GaiaRemoteConsentFlow` flow is expected to be waiting, on the browser
  // side, for a user input for allowing/declining the authentication through
  // the renderer side. When the information is available, it should be
  // propagated to the existing consent flow and react accordingly. If no flow
  // exists, the information should be dropped.
  // The `consent_result` string contains the result based on the user input,
  // constructed on the server side using `OAuth2MintTokenConsentResult`. The
  // result string is encrypted which allows protection when sent to the browser
  // side, as it will be rejected if not properly generated, and therefore not
  // granting any access.
  SetConsentResult(string consent_result);
};