SecurityEngineering/2015/Q1Goals: Difference between revisions

→‎Content Security: Filing in placeholder goal: improving password security
(→‎Content Security: Filing in placeholder goal: improving password security)
Line 4: Line 4:


== Content Security ==
== Content Security ==
* {{new|Decide on Security Engineering Proposals for Password Manager: Local Encryption, Autofill, Passwords on HTTP pages}} (dri=tanvi)<br />
* {{new|Warn users about insecure password fields in Dev Edition/Aurora.}} (dri=tanvi)
** ''(NOTE: This is temporarily vague and should be clearer early in Q1: Blocked on (soon-to-be-made) Firefox Product decisions).''
** Figure out if we can display an in-your-face warning for passwords on HTTP pages in Aurora
** Figure out if we can turn this preference on for Polaris (if not today, then someday in the future)
** Get UX help to design the warning
** Start implementing
* {{new|REVAMP: Finalize LoadInfo patches for JS/C++ gecko channels .}} (dri=ckerschb)
* {{new|REVAMP: Finalize LoadInfo patches for JS/C++ gecko channels .}} (dri=ckerschb)
* {{new|REVAMP: Start implementing the LoadInfo shim for addons.}} (dri=ckerschb)
* {{new|REVAMP: Start implementing the LoadInfo shim for addons.}} (dri=ckerschb)
88

edits