B2G App Security Model: Difference between revisions

Jump to navigation Jump to search
m
no edit summary
No edit summary
mNo edit summary
Line 41: Line 41:
|Feature requirements=*An app store needs to be able to approve an application, implying they can verify the permissions, integrity and authenticity of the app
|Feature requirements=*An app store needs to be able to approve an application, implying they can verify the permissions, integrity and authenticity of the app
*App store needs to be able to revoke an app
*App store needs to be able to revoke an app
*App store must be able to set the default permissions for an app 
*A user needs to be able to make a trust decision at install time, so they also need to be able to verify the authenticity, integrity and privileges of an app  
*A user needs to be able to make a trust decision at install time, so they also need to be able to verify the authenticity, integrity and privileges of an app  
*An store app must be able to set the default permissions for an app 
*User has control of the permissions of the app throughout its lifecycle, overriding those set by the app store if desired
*User has control of the permissions of the app throughout its lifecycle, overriding those set by the app store if desired
*Apps should be able to discover their privileges and degrade gracefully in a limited privilege environment
*Apps should be able to discover their privileges and degrade gracefully in a limited privilege environment
Confirmed users
717

edits

Navigation menu