[Author Prev][Author Next][Thread Prev][Thread Next][Author Index][Thread Index]

Re: [tor-bugs] #21922 [Applications/Tor Browser]: Add our reasoning for dealing with the XPI signing to our design document



#21922: Add our reasoning for dealing with the XPI signing to our design document
--------------------------------------+--------------------------
 Reporter:  gk                        |          Owner:  tbb-team
     Type:  defect                    |         Status:  new
 Priority:  Medium                    |      Milestone:
Component:  Applications/Tor Browser  |        Version:
 Severity:  Normal                    |     Resolution:
 Keywords:  tbb-spec                  |  Actual Points:
Parent ID:  #25021                    |         Points:
 Reviewer:                            |        Sponsor:
--------------------------------------+--------------------------
Changes (by gk):

 * parent:   => #25021


Comment:

 Should be straightforward to add this under "Other Security Measures".
 Nowadays this only affects HTTPS Everywhere. We should point out why we
 want to use EFF's signature here and could generally point out our efforts
 trying to just ship the extensions via our own in-browser update mechanism
 and not via AMO/external auto-updating.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/21922#comment:2>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online
_______________________________________________
tor-bugs mailing list
tor-bugs@xxxxxxxxxxxxxxxxxxxx
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-bugs