Places:SecurityReview: Difference between revisions

Line 51: Line 51:


== Security and Privacy ==
== Security and Privacy ==
* What security issues do you address in your project?
* What security issues do you address in your project? (XXX fill in)
** moz-anno protocol
** CanBookmarkURI
** principal checking on loading URIs?


* Is system or subsystem security compromised in any way if your project's configuration files / prefs are corrupt or missing?
* Is system or subsystem security compromised in any way if your project's configuration files / prefs are corrupt or missing?
** eg: missing visits default caused history deletion


* Include a thorough description of the security assumptions, capabilities and any potential risks (possible attack points) being introduced by your project.
* Include a thorough description of the security assumptions, capabilities and any potential risks (possible attack points) being introduced by your project.
Confirmed users, Bureaucrats and Sysops emeriti
2,088

edits