Apps/Security: Difference between revisions

no edit summary
No edit summary
Line 3: Line 3:
=Open Web Apps Security and Privacy Model=
=Open Web Apps Security and Privacy Model=


{{note|Please do not edit this page.  Share your ideas in dev-webapps@lists.mozilla.org or [[Apps/Security/Discussion]] first.}}
{{note|This is the official reference for the Apps and FirefoxOS Security Model.  Please do not edit this page without first discussing changes in dev-webapps@lists.mozilla.org}}
 
==Introduction==
==Introduction==
The open web application security and privacy model spans a wide variety of use cases, from typical web content to system-critical applications.  As such, a one-size-fits-all security model won't work.  Instead we need a range of options that balance out the flexibility and common design patterns for web applications while mitigating the additional risks that come with exposing sensitive APIs.  Additionally, providing users as-necessary insight into app use of their data helps them make more informed risk/reward decisions as they install apps and grant permissions.
The open web application security and privacy model spans a wide variety of use cases, from typical web content to system-critical applications.  As such, a one-size-fits-all security model won't work.  Instead we need a range of options that balance out the flexibility and common design patterns for web applications while mitigating the additional risks that come with exposing sensitive APIs.  Additionally, providing users as-necessary insight into app use of their data helps them make more informed risk/reward decisions as they install apps and grant permissions.
Confirmed users
717

edits