Why does nobody talk about security when discussing PWAs? If I'm running a networked app, I'd rather that app receive security updates at the pace of my web browser (usually very fast) as opposed to waiting for the app developer to get around to it.
TIL #coldcard Q uses two secure elements pitted against each other. Clever. I'd always been wary of a SE vulnerability, but this strategy makes it so both secure elements would have to have critical vulnerabilities that can be used together for key extraction. Pretty much eleveates the cost of attack to nation-state level tampering with the SE design/fab.
And to think they lured me in with the transparent colors 🤣