Privacy/Reviews/F1A: Difference between revisions

 
(4 intermediate revisions by the same user not shown)
Line 12: Line 12:
|'''Security Contact:''' || Curtis Koenig
|'''Security Contact:''' || Curtis Koenig
|-
|-
|'''Document State:''' || <section begin='status'/>{{ok|in risk analysis}}<section end='status'/>
|'''Document State:''' || <section begin='status'/>{{resolved|(18-Oct-2011) complete}}<section end='status'/>
|}
|}


Line 21: Line 21:
|'''Architectural Overview:''' || Done 7-Oct-2011
|'''Architectural Overview:''' || Done 7-Oct-2011
|-
|-
|'''Recommendation Meeting:''' || (date TBD)
|'''Recommendation Meeting:''' || Async via email
|-
|-
|'''Wrap-up Meeting:''' || (if necessary)
|'''Wrap-up Meeting:''' || (not necessary)
|}
|}


Line 478: Line 478:
''Recommendation:'' if a user has not set up Firefox to remember passwords, no passwords should be stored in localstorage by the share add-on or its webapp components (they can be retained in memory, but lost when Firefox is closed).
''Recommendation:'' if a user has not set up Firefox to remember passwords, no passwords should be stored in localstorage by the share add-on or its webapp components (they can be retained in memory, but lost when Firefox is closed).


{{ResolutionBox|{{ok|oauth tokens are stored in localStorage and are cleared when users click logout or clear browser's localStorage. Oauth tokens should be purged when users clear "active logins".}}}}
{{ResolutionBox|{{resolved|oauth tokens are stored in localStorage and are cleared when users click logout or clear browser's localStorage. Oauth tokens stored by this addon's apps are purged when users clear "active logins".}}}}


== Browsing History ==
== Browsing History ==
Line 549: Line 549:
|
|
|-
|-
| {{new|update add-on to purge oauth tokens (via logout() call) when user clears "active logins" via browser's "clear recent history" dialog}}
| {{done|update add-on to purge oauth tokens (via logout() call) when user clears "active logins" via browser's "clear recent history" dialog}}
| Shane
| Shane
|
| {{bug|695259}}
|
|
|-
|-
Line 561: Line 561:




[[Category:Privacy/Reviews|Template]]
[[Category:Privacy/Reviews|F1A]]
canmove, Confirmed users
1,537

edits