This document discusses using secure elements in web applications. It proposes a cross-platform API to access secure elements from web applications across devices. The API would provide functions like enumerating readers, detecting insertions/removals, connecting to secure elements and applications, and transmitting commands. Access control is important and could use techniques like permissions, same-origin policy, and GlobalPlatform rules. Standardizing this API could help build trusted services for authentication, payments, and other use cases. The document encourages participation in new W3C working groups to further define use cases and specifications for the API and its implementation.