Hacker News new | ask | show | jobs
by ivanmontillam 1837 days ago
In this case mailto:// doesn't try to impersonate any app, but if it were to be done (for example) "skype://" I could install another app that overrides the current app protocol, and mislead the user and catch privileged data intended for the original app.

But of course, technically it's the exact same thing, it's just a layer above. So you have a point.