User:Lco/FX-Privacy-and-Security-Design-I: Difference between revisions
< User:Lco
Jump to navigation
Jump to search
No edit summary |
|||
Line 1: | Line 1: | ||
== Main Artifacts == | |||
* [http://people.mozilla.org/~lco/ProjectSPF/ Security and Privacy Principles] (website) | |||
* [http://people.mozilla.org/~lco/ProjectSPF/Principles/130712%20postcard.pdf Postcard] (PDF) | |||
* [https://air.mozilla.org/meaningful-security/ Brownbag](Air Mozilla) | |||
* [http://people.mozilla.org/~lco/ProjectSPF/Presentations/130116%20Meaningful%20Security%20Brownbag.pdf Presentation] (PDF) | |||
Blog posts on the subject | |||
* [https://blog.mozilla.org/privacy/2013/05/21/exploring-the-emotions-of-security-privacy-and-identity/ Exploring the Emotions of Security, Privacy, and Identity] by Lindsay Kenzig (User Research) | |||
* [https://blog.mozilla.org/privacy/2013/05/31/designing-meaningful-security-and-privacy-experiences-part-ii/ Designing Meaningful Security and Privacy Experiences] by Larissa Co | |||
* [https://hacks.mozilla.org/2014/01/five-potential-privacy-pitfalls-for-app-developers/ Five Potential Privacy Pitfalls for Developers] by Larissa Co and Alina Hua | |||
== Project Description == | == Project Description == | ||
A month(ish)-long study to provide the FX UX team with guidelines for designing for security and privacy. | A month(ish)-long study to provide the FX UX team with guidelines for designing for security and privacy. | ||
Line 20: | Line 32: | ||
Note: We aren't going to accomplish the items above mainly because this is intended to be a scoping project. I'm not going to do any ethnographic research for this phase yet, nor will I try to address all the specific design problems we have in Firefox. These are all good things to start working on if phase I is a success though. | Note: We aren't going to accomplish the items above mainly because this is intended to be a scoping project. I'm not going to do any ethnographic research for this phase yet, nor will I try to address all the specific design problems we have in Firefox. These are all good things to start working on if phase I is a success though. | ||
== | == Archive of Work == | ||
Notes and other work in progress relating to this project. | Notes and other work in progress relating to this project. | ||
* [http://people.mozilla.com/~lco/ProjectSPF/Starter%20Frameworks%20and%20Principles%20v2.pdf Starter Frameworks and Principles] (Updated: v2, Aug 16, 2012) | * [http://people.mozilla.com/~lco/ProjectSPF/Starter%20Frameworks%20and%20Principles%20v2.pdf Starter Frameworks and Principles] (Updated: v2, Aug 16, 2012) | ||
* [https://firefox-ux.etherpad.mozilla.org/21 Running List of Security/Privacy Issues] | * [https://firefox-ux.etherpad.mozilla.org/21 Running List of Security/Privacy Issues] | ||
* [http://people.mozilla.org/~lco/ProjectSPF/Presentations/131213%20Spideroak.pdf UX Design and Security] - talk I gave at Spideroak in Dec. 13, 2013 | |||
== Related UI == | == Related UI == | ||
Line 30: | Line 43: | ||
** [http://people.mozilla.com/~lco/ProjectSPF/Mixed_Content/Mixed%20Content%20Spec%20v3.pdf Mixed Content Spec] (v3, Sept 14, 2012) | ** [http://people.mozilla.com/~lco/ProjectSPF/Mixed_Content/Mixed%20Content%20Spec%20v3.pdf Mixed Content Spec] (v3, Sept 14, 2012) | ||
** [http://people.mozilla.com/~lco/ProjectSPF/Mixed_Content/Mixed%20Content%20Analysis%20v2.pdf Mixed Content UI] (Aug 14, 2012) | ** [http://people.mozilla.com/~lco/ProjectSPF/Mixed_Content/Mixed%20Content%20Analysis%20v2.pdf Mixed Content UI] (Aug 14, 2012) | ||
== Reading == | |||
Some of the material I've read to help me understand this subject | |||
* [https://firefox-ux.etherpad.mozilla.org/SOUPS-2013-links SOUPS 2013 papers] - Symposium on Usable Privacy and Security (Alina and I attended this) | |||
* [http://www.cs.berkeley.edu/~tygar/papers/Phishing/why_phishing_works.pdf Why Phishing Works] | |||
* [http://credibility.stanford.edu/guidelines/ Website Credibility Guidelines] | |||
* [http://www.cs.berkeley.edu/%7Edevdatta/papers/alice-in-warningland.pdf Alice in Warningland] |
Revision as of 16:42, 28 April 2014
Main Artifacts
- Security and Privacy Principles (website)
- Postcard (PDF)
- Brownbag(Air Mozilla)
- Presentation (PDF)
Blog posts on the subject
- Exploring the Emotions of Security, Privacy, and Identity by Lindsay Kenzig (User Research)
- Designing Meaningful Security and Privacy Experiences by Larissa Co
- Five Potential Privacy Pitfalls for Developers by Larissa Co and Alina Hua
Project Description
A month(ish)-long study to provide the FX UX team with guidelines for designing for security and privacy.
Why do we want to do this project?
- The Mozilla UX team, particularly the Firefox team wants to have a consistent, reasonable design stance on privacy and security that can be used as a guideline for addressing security and privacy requirements in our products.
- Because Security & Privacy reside in the realm of the super-technical or super-paranoid, and we want to make it more human and friendly (for the rest of us).
What this project will deliver:
- Baseline frameworks for designing for Security & Privacy in Firefox by evaluating current trends and existing (usability, user, academic) research
- Initial design guidelines for designing for security & privacy in Firefox
- A small design exercise using the framework with a specific Firefox security or privacy issue
- A summary presentation & report about the findings
What this project is NOT going to accomplish in one month:
- Provide Mozilla with a list of opportunities for innovative design in the security & privacy space
- Provide a detailed analysis of user needs and mindsets (need ethnographic research for this)
- Have a concrete design for all of the security and privacy needs we currently have today
- Establish a really solid design strategy for security and privacy (need ethnographic research for this)
Note: We aren't going to accomplish the items above mainly because this is intended to be a scoping project. I'm not going to do any ethnographic research for this phase yet, nor will I try to address all the specific design problems we have in Firefox. These are all good things to start working on if phase I is a success though.
Archive of Work
Notes and other work in progress relating to this project.
- Starter Frameworks and Principles (Updated: v2, Aug 16, 2012)
- Running List of Security/Privacy Issues
- UX Design and Security - talk I gave at Spideroak in Dec. 13, 2013
Related UI
UI designs I've created along the way.
- Mixed Content
- Mixed Content Spec (v3, Sept 14, 2012)
- Mixed Content UI (Aug 14, 2012)
Reading
Some of the material I've read to help me understand this subject
- SOUPS 2013 papers - Symposium on Usable Privacy and Security (Alina and I attended this)
- Why Phishing Works
- Website Credibility Guidelines
- Alice in Warningland