Re: CSP violations introduced by Addons / Extensions

On Sat, Oct 27, 2012 at 12:37 AM, Dan Veditz <dveditz@mozilla.com> wrote:
> On 10/25/12 12:24 AM, Ingo Chao wrote:
>>
>> Without the violation report for extensions/addons, monitoring loses
>> the chance to highlight risks coming from injected scripts.
>
>
> You mean you, as a site author, want to be informed when an extension has
> injected content whether the extension wants to be identified or not? That's
> the exact opposite of what Fred Andrews was requesting.
>
> -Dan Veditz

Yes. I am more concerned about the impact on privacy that an add-on may create.

Ingo

Received on Monday, 29 October 2012 08:41:48 UTC