>> - a request that carries the gadget security token should be able to >> do anything the gadget could do > > > Yes, since this is replacing the existing gadget to server wire protocol and > we don't want to break anything.
Actually, that question (and answer) doesn't make sense to me. Gadget don't "do" anything to the RESTful server. Users do. Dirk.

