B2G App Security Model: Difference between revisions

Jump to navigation Jump to search
no edit summary
mNo edit summary
No edit summary
Line 49: Line 49:
*Apps should not be vulnerable to common web vulnerabilities when granted significant privileges
*Apps should not be vulnerable to common web vulnerabilities when granted significant privileges
*Ability to grant trust for certain highly sensitive privileges (such as phone dialing) may be restricted at the OS level to specific trusted parties
*Ability to grant trust for certain highly sensitive privileges (such as phone dialing) may be restricted at the OS level to specific trusted parties
|Feature non-goals=This document does not try to define the broader B2G security model, nor does it define the Open Web Apps security model even though we expect that B2G will contain a superset of the latter's requirements.
|Feature non-goals=This document does not try to define the broader B2G security model, nor does it define the Open Web Apps security model even though we expect that B2G will contain a superset of the latter's requirements. {this non-goal is of sufficient concern to have a bug report raised specifically about it.  the security of apps '''cannot''' be discussed separately from the wider and more fundamental issue of the security of the underlying OS. https://bugzilla.mozilla.org/show_bug.cgi?id=707625}
|Feature functional spec=Functional specs are TBD.
|Feature functional spec=Functional specs are TBD.
    
    
177

edits

Navigation menu