> That's one example. I would also like any Web server to be able to extract
> the XO identity and use it in CGI (e.g. PHP) for processing.

the plan for that is that

1 - the special authentication scheme we come up with is exclusively
between Browse.xo and the XS -- based on a preexisting relationship

2 - other standard webapps can recognise the identity of the XO via
OpenID, a scheme whereby the XS says "yes, that XO is Greg as it
claims to be". An openID "identity provider" acts a bit as a country
issuing a passport.


