Notes from GSP, day 2 – OpenSocial Apps & Containers

 One api, many websites
  – client-side javascript
  – server-side rest
   – atomPub and JSON

 Core services
   – People (who am I, who are my friends)
   – Activities (what I’m doing)
   – Persistance (state without a server)

 Caja – when gadgets go bad
   – gadgets can be a new vector for phishing, spam, etc.
   – cabability-based javascript sanitizer
   – open source project from google
   – optional, but recommended for openSocial containers
   – eventually will be secure enough to run gadgets inline instead of in iFrame


