Aymeric Vitte: > > Le 19/06/2014 20:51, Georg Koppen a écrit : >> DOM Storage in Tor Browser does not save state to disc. > > So it's there until you close your browser, that's far enough to track > you and expose you. > >> And it is bound >> to the URL bar domain (see design document). > > That's not specific to DOM storage, it just follows the same origin > policy like all W3C/WHATWG APIs That holds for the one in a vanilla Firefox, yes. But not for the one we ship. You should really read our design document and look at the commit in my other mail. Georg
Attachment:
signature.asc
Description: OpenPGP digital signature
-- tor-talk mailing list - tor-talk@xxxxxxxxxxxxxxxxxxxx To unsubscribe or change other settings go to https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-talk