3 ms·
I wonder when we instead of having incognito modes have separate sandboxes per domain. Say one domain that only have data from facebook.com and is only reachabl
by Flow 14y ago
I wonder when we instead of having incognito modes have separate sandboxes per domain. Say one domain that only have data from facebook.com and is only reachable if you are actually visiting facebook.com.
Yes, this will make the web less hyper, but right now some behaviors is out of control for the user.
- dredmorbius 14y agoThat's a discussion I'd really like to see expanded. There are various sandboxing models out there, none of which really suitably address my privacy concerns. And most of which will break large portions of the transactional Web as it exists today (that is: websites which interact with other systems, and/or specifically transact commerce). Of course, there's little to pushing the data sharing from the client to the server either. This is a fluid in a balloon. It tends to spill out elsewhere when squeezed in any given spot.
- kijin 14y agoSeparate sandboxes per domain sounds a bit extreme. A lot of websites are made up of content from different domains, like images pulled from CDNs. Whitelisting each of them would be an even bigger headache than managing NoScript. What I'd like to see in the short term is per-tab isolation. If I'm logged into Google/Facebook/etc in one tab and browse other sites in another tab, I want to have the ability to prevent the second tab from knowing which user I'm logged into in the first tab. This could also solve a lot of CSRF problems. Unfortunately, Firefox -- the only browser that is likely to support such behavior either as a built-in feature or as an add-on -- doesn't even run tabs in separate processes. One tab freezes, the whole browser freezes. Urgh.