Comment Re:How is this different (Score 1) 142
There is one major error that I haven't seen anyone point out yet.
In the general sense, XMLHttpRequest does not introduce XSS risks: you can't make off-domain requests with XHR.
You are in a maze of little twisting passages, all alike.