9 ms·
Firefox to get a “walled garden” for extensions, Mozilla to be sole arbiter
- byuu 12y agoWith each passing day, Mozilla tries harder and harder to get me to stop using their browser. If not for Chrome being the only viable alternative, they would have long since succeeded. Wreck the address bar algorithm? Ugh. Move the tabs on top? Ugh. Force me to keep download history? Ugh. Bury all the configuration options (like JS features) into about:config? Ugh. Turn the UI into a poor Chrome imitation? Ugh. Turn the new tab page into adware? Ugh. Promote a bigot to the CEO position? Ugh. And now turn extensions into a walled garden? ... I can't even muster up the energy to feign surprise anymore. I basically expect a new disappointment every time I hear Mozilla in the news.
- sparaker 12y agoI agree with you on this. However i have also seen that alot of malware and adware does indeed make it to the browser to make it more pathetic and i think its a good direction in that regard. However i think that they really need to actually think what users are going to use then just build random features that nobody really cares for. And the imitation game is definitely not good, why be separate if you're going to keep on imitating.
- byuu 12y agoThe problem is that the malware is going to find a way through anyway. Even if it has to replace firefox.exe with a custom compiled binary that removes the signature checking function; or simply patches out the check in the binary on your system like a warez crack. This is going to impede regular users a lot more than the advertisers.
- _pmf_ 12y ago> I basically expect a new disappointment every time I hear Mozilla in the news. Shitty suggestions that elicit strong reactions seem to be better for the Mozilla Corporation than being more and more ignored.
- tokyo1000 12y agoIt's too bad to see that your comment is getting downvoted. I think it hits on some important issues. From what I can tell, Mozilla's own Firefox feedback stats support what you're saying. https://input.mozilla.org/en-US/?product=Firefox https://input.mozilla.org/en-US/?product=Firefox It's currently showing 77% of the reports about Firefox as being 'sad', while only 23% are 'happy'. It gets even worse if Firefox OS and Firefox for Android are included, too. In that case, 86% of the reports are 'sad', and only 14% are 'happy'. I expect disappointed users to be more likely to say something, but that's still an awfully large difference between the proportion of users who are 'happy' and those who are 'sad'. When I used Firefox for Android, I'm pretty sure it sometimes prompted me to give feedback, so it's not like only disappointed users looking to complain are being sampled. I don't know how things work at Mozilla, but at any other software product company I've ever worked at, feedback results so out of whack would've raised a lot of eyebrows, and gotten a lot of attention. Much effort would have been put toward finding out what's wrong, and what can be done to fix it, especially if the results were consistently bad for weeks or months on end.
- nine_k 12y agoI never knew about that page to this day. I left a 'happy' piece of feedback. Should I have a serious issue, I'd probably look for a feedback page to report my problems, and would find it. So I think the feedback there is seriously skewed towards "unhappy".
- TheLoneWolfling 12y agoAnd this is why feedback forms are useless. They just reinforce people's intrinsic biases. Someone thinks that the current version is good, but the feedback is bad overall? Must just be that the feedback is skewed. Someone thinks that the current version is bad but the feedback is good overall? Must just be that the feedback is skewed.
- byuu 12y agoI think it's part of the dark side of open source software. When your product is free, you feel no obligation to your users whatsoever. We see it time and time again. Firefox, Ubuntu, Gnome 3, KDE 4, systemd, etc. The attitude is always, "we know what's best for you, piss off." Hell, I am guilty of it myself. When I'm working on projects for free, I do things the way I want them done. But in my defense, I'm one person working on niche projects nobody would ever depend on for anything important, and I am not looking for popularity. But right now, the most I can do to express my dissatisfaction is to simply leave. And when we all do that, then suddenly they don't hear anyone complaining, so they think everything they are doing is great, and keep getting worse. I complain because I've enjoyed their software so much in the past, and I'm saddened by its new direction. Microsoft really went against the grain with Windows 8. And you saw similar levels of outrage. But you know what? The Windows 10 preview has fixed most of it. The Metro start page is gone, the start menu is back, Metro things can run inside windows and multi-task properly now ... they may not be perfect, but they are definitely listening to their customer's feedback, at least.
- barrkel 12y agoI hear you - very few of Mozilla's moves have been to my liking, and I have to work harder and harder on every fresh install to get Firefox looking and working the way I like it. However, thus far, I've been able to do it. I disable the magic address bar, I use tree style tabs, I have history disabled, and I use combo of menu, toolbar and status bar (Status 4 Evar, addon bar, whatever) to maintain what I consider to be a usable UI. These are all extra work, but I haven't been locked out. My concern about this latest move is the lag when Firefox needs an upgrade, and not all extensions have been updated and signed. I've had to download and install custom treestyle tabs builds in the past in particular.
- byuu 12y agoLikewise. I am currently running Classic Theme Restorer, oldbar, Cookies Manager+, Download Cleaner, plus the usual stuff (Adblock and such.) Not only do I have to trust a bunch of third-party devs I don't know; it also takes longer and longer to setup and start using Firefox on a fresh install. And indeed like you said ... the signing thing is a huge issue. oldbar in particular hasn't been touched since 2008. I've also had to manually load Greasemonkey before, and many times I've had to manually edit the XPI file compatibility ranges so that I could install certain extensions.
- hiou 12y agoI upvoted you to get you out of the grey because I didn't feel like your comment was too inflammatory and did bring up specific issues which are relevant in a big picture view to this change. That said, the CEO comment was a bit unproductive. One thing I would like you to consider is that Firefox has to maintain a certain marketshare in order to continue to serve their mission. Which includes fighting for web standards and other things outside directly working on the browser/phone os. Unfortunately, that causes them to serve the larger market than what you or I might enjoy. I'm definitely not a big fan of the dummification trend in UX right now(which most of your complaints seem to stem from), but I'm sure it's just that, a trend, and we'll see some of the more ridiculous parts of that trend move back toward the middle soon enough. Design trends are like the weather, if you don't like it now, just wait a bit and it will be sure to change. So, hopefully you can cut Mozilla a little slack as they have a many headed dragon to feed and that set of compromises will leave everyone a bit hungry, but on the whole I feel more comfortable depending on Mozilla than the alternatives of Apple and Google.
- byuu 12y ago> That said, the CEO comment was a bit unproductive. I thought about leaving it out because it wasn't a technical issue, but being honest, it was one of the bigger disappointments I've had with their project, so it seemed important to include it. I know all about the situation, and I also don't like how it was resolved (my disappointment was that it happened in the first place.) I also know others won't agree with me on that. But to me, it's a very important issue. I think ethics are absolutely essential for a CEO of a company. > Which includes fighting for web standards This is certainly one positive thing I will say about them. They have definitely helped advance good standards (HTML5, CSS3, etc.) > Design trends are like the weather, if you don't like it now, just wait a bit and it will be sure to change. I sure hope so. I've been backed into such a tight corner. I'm down to running FreeBSD with Xfce, and I'm already starting to write my own basic system utilities now (file manager, text editor, etc) because this trend is just accelerating so rapidly.
- blueskin_ 12y ago>the CEO comment was a bit unproductive. That doesn't make it untrue. He was a bigot, and good riddance to him; I hope his reputation remains sufficiently sullied for the foreseeable future.
- blueskin_ 12y agohttp://www.palemoon.org/ http://www.palemoon.org/
- yc1010 12y agoInstead of a walled garden approach, why cant they do a "Verified by Mozilla" badge for each plugin, with warnings if one doesn't have it BUT still giving the user control and choice of whether to use a plugin. I a made a quick and dirty plugin for chrome a month ago only to find out i need to undergo an anal exam and give over credit card information to Google, fuck that! is that where Mozilla want to endup?
- Ygg2 12y agoWell, they have featured plugins, but it doesn't seem to be helping.
- tokenizerrr 12y agoActually for the Chrome store you can make a developer account, never send them any money and then publish your extension as unlisted. This way it will not show up in search results, but you can still link to it directly. Less nice than being able to self-host them which used to be possible, though...
- blueskin_ 12y agoBecause that would be giving their users choice and control rather than apple-style authoritarian dictatorship.
- tommi 12y ago"That makes it vaguely more egalitarian than a complex and bureaucratic mechanism that tends to favour bigger, more established software makers, who themselves have the staff and bureaucracy to match." This is FUD. Even Apple's App Store doesn't require huge amount of bureaucracy let alone what they seem to be talking about.
- peri 12y agoAgreed. Cryptographic signing of extensions in this context doesn't seem to me to be significantly different from the signing done by your other package management systems. One of my professors said "the browser is the new OS" about a decade ago. This seems like more proof of that to me — if we want fast, low power JavaScript in browsers, we have to have a reasonable chain of trust imo.
- Trombone41 12y agoI tried renaming some files with "the new OS", but all I got was a 404. I had to use the one the browser was running in instead.
- Trombone41 12y agoI think this refers to the apple practice of having vague rules and arbitrarily classify apps one way or another with no reliable explanation reaching the outside. So not bureaucratic in a literal sense, but rather in the sense of an opaque apparently rule-driven organization that produces incomprehensible decisions. Sometimes apps containing things like pictures of old paintings with nude ladies are fine, sometimes not. Often updates to something published will get stuck because some rule is supposedly being broken by the update, but of course the original, accepted, app contained the exact same thing.
- pjc50 12y agoMalicious extensions are apparently the driver for this. So we're back to the problem that any sufficiently flexible platform is a vector for malware. The platform authority then institutes code signing as a checkpoint against this. Thus raising a big barrier to entry for non-malicious extensions. It's hard to see how to get back into this particular Eden.
- peri 12y agoSorry for the rude question here, but is this speculation on your part or based on stuff said by folks at Mozilla (the corp, not just contributors/clients)? Some clearer sources would be helpful this early in the morning.
- tzs 12y agoFrom the Mozilla add-ons blog, which is linked to in the article: Extensions that change the homepage and search settings without user consent have become very common, just like extensions that inject advertisements into Web pages or even inject malicious scripts into social media sites. To combat this, we created a set of add-on guidelines all add-on makers must follow, and we have been enforcing them via blocklisting (remote disabling of misbehaving extensions). However, extensions that violate these guidelines are distributed almost exclusively outside of AMO and tracking them all down has become increasingly impractical. Furthermore, malicious developers have devised ways to make their extensions harder to discover and harder to blocklist, making our jobs more difficult. We’re responsible for our add-ons ecosystem and we can’t sit idle as our users suffer due to bad add-ons. An easy solution would be to force all developers to distribute their extensions through AMO, like what Google does for Chrome extensions. However, we believe that forcing all installs through our distribution channel is an unnecessary constraint. To keep this balance, we have come up with extension signing, which will give us better oversight on the add-ons ecosystem while not forcing AMO to be the only add-on distribution channel.
- peri 12y agoThanks, was in a hurry to catch my train.
- maxerickson 12y agoThe mozilla blag this links says this: For extensions that will never be publicly distributed and will never leave an internal network, there will be a third option. We’ll have more details available on this in the near future. That sounds like admin installed certificates in the browser to verify the local signatures.
- bpodgursky 12y agoIMO the rise of aggressive ad-blocking extensions has spoiled a good thing for everyone. I don't believe that Mozilla has any innate desire to lock-down users and prevent them from customizing their browsers, but making a browser is now an expensive and complicated project, and both Firefox and Chrome are bankrolled by companies which make their revenue primarily via advertising (Google + Yahoo, Google). It's clear that Google will never make the same mistake with mobile Chrome -- it will never be extensible, because they have no desire to sacrifice that advertising revenue. I doubt it will be more than a year or two before the Mozilla app store is purged of ad-blocking extensions, if they ever make it in. I don't want to get in some flamewar about "oh but ads are so bad, I can't help but install adblock". They suck, and I'm not accusing anyone of acting in anything other than their personal best interests, but I think everyone should acknowledge that this is the natural end-game.
- jacquesm 12y agoThere is now a different prong on this fork: adblocking software can help in filtering out drive-by-malware served up through advertising infrastructure. By removing ads you get rid of one possible source of trouble. So besides the speed and the nuisance factors there is now also a security factor involved in ad-blocking.
- danielweber 12y agoThere is no evidence that they are going to ban ad-blocking extensions.
- evilpie 12y agoAs one of the biggest Firefox contributors, I am actually annoyed by how bad this decision is from a technical point of view as well. We have already seen malware that just replaces the Chrome binary to avoid add-on checks, but somehow this isn't seen as a big problem? > That is possible, but I don’t expect the majority of malware developers to go through such trouble. [1] I can totally understand where this idea is coming from, but trying to somehow secure Firefox on a system that is already busted is futile. [1] https://blog.mozilla.org/addons/2015/02/10/extension-signing-safer-experience/comment-page-2/#comment-212726 https://blog.mozilla.org/addons/2015/02/10/extension-signing...
- eklavya 12y agoI can totally see why such a thing would be required. I have always wanted to have add-ons vetted by someone I can trust. This will be really effective at least on windows where softwares randomly install shitty add ons and hijack the browser. And mozilla not likely to give in to unreasonable requests from governments because if they are not then add ons should be the least of our worries.
- kbart 12y ago"I have always wanted to have add-ons vetted by someone I can trust." That's fine, but what about those, who want to homebrew their own plug-ins, experiment with something from GitHub etc? Mozilla could make signed plug-ins a default choice, but not prevent others. A good model, imho, is implemented on Android -- your (only) default choice is Google Play, but if you know what you are doing, you can install any app from anywhere. This way users, that need a hand holding, are protected, but more tech savvy ones will not have their freedom denied.
- eklavya 12y agoThat is allowed, only the android browser is restricted, there too you can run anything on the beta version.
- shiftpgdn 12y agoMy Chrome profile is current infected with malware due to Google's laissez-faire attitude towards their app store. I consider myself a pretty tech savvy user and still managed to get infected. A bit of vetting for add-ons is probably a good thing in the long run.
- StevePerkins 12y agoI know that people love to reflexively bash anything that Mozilla does (and I'm critical more often than not myself), but this seems positive overall. As a savvy user, I can always manually install a plugin just as I can side-load an Android app that isn't on Google Play. However, my mom and other casual users who probably shouldn't be installing plugins at all have a somewhat more curated experience. I'm a bit skeptical of an automated security scan and approval process, but at least it provides a means to revoke a malicious plugin when complaints come in after the fact.
- smhenderson 12y agoAccording to the article you won't be able to do that; although not all extensions have to go through addons.mozilla.org they do all have to be digitally signed. There are exceptions - something about "in house, corporate" (whatever that means), developer editions of Firefox and nightly builds. But if I read correctly users of the current, stock Firefox will not be able to suppress the signature check when installing addons.
- chimeracoder 12y agoTo be honest, I don't think people who aren't capable of or interested in downloading a developer edition should be installing unsigned extensions. If there's an unsigned extension you really can't live without, just download Iceweasel - problem solved. It's not like this will be that hard to get around for people who know what they're doing, so I'm not too worried about this change.
- smhenderson 12y agoI don't completely disagree, and I know computer users have always been treated as separate groups based on skills. That said it's unsettling to me to see a group like Mozilla officially treating users this way. Software freedom is for everyone and, IMHO, treating one group differently than another with regards to this freedom just legitimises the walled garden concept further. As the article said, it's hard to call them a community or foundation when they turn around and announce a very company-like policy such as this...
- mangecoeur 12y agoWell thats a totally click-bait and misleading title. The essence of a walled garden is that it's hard to get in, and if you're not let in then you lose out. Mozilla only require signing by them or by someone else, which given the proliferation of malware is hard to see as a bad thing, especially given the privileged access granted to addons. If you're too stubborn to let Mozilla sign it AND too lazy to do it yourself then that's your problem - you have no inalienable right to demand that people run your code if you can't be bother to secure it. However you are never locked out of providing mozilla addons, you can still supply whatever you like. Also, Why did this piece bother to quote the random verbal vomit of some internet commenters? What is that supposed to show? That some people online are rude and ignorant? Frankly there's quite a bit of FUD in this thing, like asking if devs can trust that moving from Dev versions to production will break their code - pretty much the whole point of Mozilla's development model in iterating and providing developer editions is to ensure that doesn't happen.
- blackoil 12y agoSome people will see walled garden as one with few gates and a sentry controlling who can enter, e.g. Ios app store is not very difficult to enter in as a million apps have entered, but if apple does not agree, you cannot publish the app.
- onli 12y agoThe problem here is not the signing. It is a perfectly valid reasoning: Addons can be like malware, and that is something Mozilla should protect its users from. Reviewing and then signing extensions is an ok way to do that. But the focus here is not the signing, it is the reviewing. The problem is not the reviewing either. That may take time and is unpleasant, but it offers something good in return. The problem is the "we will do it this way and make it not configurable". There is no need for that. Users don't change defaults, it would be perfectly valid to go the android route: Disallow the installation of unreviewed addons by default, but add an option in the settings to override this behaviour for users who know what they are doing. That way, you still protect users in general, and you don't anger the other users who want to install addons from github or whatever. It was completely unnecessary to make it this controversial by forcing it on all users, by taking freedom away.
- sonnyp 12y agotrue but if Malware.exe ships with an addon, it could tweak Firefox user profile to allow the addon install
- tomp 12y agoYou argument is basically: "if a user installs the virus, the virus will make sure that the user will install the virus". Nonsense.
- tokenizerrr 12y agoIt could also patch firefox.exe to allow it. Or, just run in the background in its own process because malware.exe is already running. Once you have malicious binaries running on the user's computer all bets are off.
- acdha 12y agoThis is partially true – code-signing defeats it on modern operating systems – but don't forget that much of the problem isn't outright malware but rather ad-ware like the ask.com toolbar where the companies try to claim that users chose to enable it to avoid prosecution or lawsuits. This is a relatively minor change but the automated checks prevent some of the more blatant abuse and, more importantly, the fact that you can't just anonymously upload code forces shady companies to leave more of a paper-trail.
- scottjad 12y agoAnd what about other xulrunner applications, such as Conkeror? Do their extensions need to be signed by Mozilla? So if I use a xulrunner based app, and I want to run a Firefox extension (like ABP, mozrepl, etc), right now all I have to do is edit it's install.rdf and whitelist my application, and if there's a signature (META-INF folder), delete that. In this scheme, as I understand it, that would not work, unless I was running the Firefox Developer edition or had an app popular enough to get developers to include it in their whitelist before signing, and even then there would be plenty of exceptions. So now no one can run my xulrunner based app (with extensions) with the normal firefox installed on their system (or likely available in their distro package repository). Please tell me this won't apply to apps launched via xulrunner or firefox -app (with the normal firefox).
- Ded7xSEoPKYNsDd 12y agoThe initial announcement said, that there are no immediate plans to enable this for Thunderbird. I'd guess it's just a compile-time flag in .mozconfig. In that case it would affect firefox -app. (But I didn't bother to actually look at the source!)
- mschuster91 12y agoNormally, I dislike "walled garden" approaches. The problem with browser extensions is that there are too many bad players on the field, preying on the non-technical people. The situation is not as bad as in the IE heydays where I regularly cleaned up 10+ (!) toolbars from customers' computers, but it's still a problem. And I, unfortunately, don't see any way to avoid a walled garden approach - as long as there is a sideload option like on Android, I'm fine with it. edit: downvotes? Care to explain how else to solve the bundled crapware toolbar plague?
- mikegerwitz 12y agohttps://wiki.debian.org/DebianMaintainer https://wiki.debian.org/DebianMaintainer
- acdha 12y agoThat doesn't really explain anything
- doublextremevil 12y agothe thing is, you won't be able to side-load extensions. There will be no about:config option. You will be forced to use the Development or Nightly versions to get that freedom.
- wodenokoto 12y ago"This, of course, raises the question, "Will the unbranded or the Developer builds be sufficiently similar to the Release versions out in the real world that developers can stand by their testing results?"" Yes. It's the same code with different logo.
- hobarrera 12y agoDifferent theme as well, and some other things (like the preferences dialog). Testing proper integration on those aspects will get pretty hard.
- userbinator 12y agoIt's funny to read this and the previous articles about the loss of freedom in Firefox, then see the description on its download page (https://www.mozilla.org/en-US/firefox/new/ https://www.mozilla.org/en-US/firefox/new/): "Download Mozilla Firefox, a free Web browser. Firefox is created by a global non-profit dedicated to putting individuals in control online." I find the "appeal to security" argument that's being increasingly popular these days as nothing more than an excuse to restrict general-purpose computing and control the users, and I am not happy about it at all. "Malware is the new terrorism." The idea that we should take away freedom just because someone could possibly make a wrong decision is personally quite horribly disturbing. On the other hand, from the perspective of wanting to exert control, it makes perfect sense: by decreasing the amount of decisions users have to do, it induces atrophy of their critical thinking skills, and makes them more inclined to accept things without questioning... "Freedom is not worth having if it does not include the freedom to make mistakes."
- nailer 12y agoIt seems like you haven't read the article. Users are still allowed to install any extension from outside the garden they want.
- userbinator 12y agoUsers are still allowed to install any extension from outside the garden they want. It's yet another hoop to jump through, one that further splits "developers" and "users" and makes it harder to be a "casual developer" - one who just wants to make an extension and share it among a small group.
- nailer 12y ago> one who just wants to make an extension and share it among a small group. That's a fair point, but I don't think it's that bad. I do this all the time with Chrome, which already has walled garden: "Hey guys, I made a Chrome Extension that inlines all the images in our shitty issue tracking app rather than having to download them all. Extract the zip, visit chrome://extensions, enable developer mode, and load that folder."
- blueskin_ 12y agoMozilla get scummier every year. Might be time to move to Pale Moon, I think.
- TheLoneWolfling 12y agoAlready have, and as time goes on it's looking like I made a better and better choice. At least PM actually follows through with the concept of user freedom.
- blueskin_ 12y agoI'm moving over as soon as this steaming turd mozilla are dropping on us hits ESR.
- daw___ 12y agoFrom the announcement: For developers hosting their add-ons on AMO, this means that they will have to either test on Developer Edition, Nightly, or one of the unbranded builds. Does this mean that developers won't be able to test the add-ons on official stable binaries end users will consume their add-ons on? Good luck with that.
- hobarrera 12y agoI find this unbelieveable too. Developers being unable to test the addons in the same browser that end-users use is stupid. That aside, I honestly can't see the value of the developer edition at all.
- daw___ 12y agoMe neither. Maintaining a set of features that will be unused by most users is definitely more convenient than maintaining a whole separate build that will be used by a small subset of users.
- danielweber 12y agoMy thinking is "I have to install another thing onto my computer to write a script?! Eh, maybe I'll do something else with my time instead."
- Supermighty 12y agoI wonder if a side effect--or conspiratorially the intended consequence--will be a culling of older, poorly implemented poorly supported, plugins.
- Mahn 12y agoMy startup, that shall go nameless, provides a service used mainly by the tech illiterate. Early in our first beta we determined we needed to log client side errors since there is quite a lot going on in there, so we quickly implemented a system that phones homes for every uncaught exception and error. Since we didn't filter the source, immediately after we were getting flooded with third party javascript errors. But not the innocuous facebook like button or google analytics kind of errors, mind you, but errors coming from javascript sources we had never added, that is, injected javascript. Upon further inspection at the source code of these scripts and some googling, we found out that it was ad injecting malware in the form of Chrome extensions. Basically and long story short, some 40-50% of our customer base browses the web with ad injecting malware installed, and that's only counting malware that caused errors client side, which is obviously not all. This was naturally disheartening for us, because you pour your heart and soul into building the best product you can deliver only to hear a very large amount of your customers will never experience anything other than a very subpar version of it... Browser malware is a very real problem, and I don't know if Mozilla's approach is the best way to tackle it, but there definitively needs to be more people thinking about it, and in particular the Google Chrome team.
- lmm 12y agoIf only the system were just about malware. I remember when Chrome kicked any youtube-downloading extensions out of the chrome store. What happened? A few people downloaded non-chrome store extensions, but most of them downloaded the ones that were left in the store - the malware extensions that promised to download youtube but didn't. Huge spike in malware on Chrome installs that I saw.
- blueskin_ 12y agoWhy not just add a warning to the site to come up if they have malware, with a list of good, trustable links for them to follow?
- hobarrera 12y agoI'm wondering how the EFF feels about this, amogst others. HTTPS Everywhere is currently only available via their website because it's actually securer than though AMO. If mozilla wall-gardens firefox in the interest of security, I guess they've got some serious issues to settle. I also wonder bit what happens to developers who need a small userbase to tests their alphas/betas before publishing, as well as custom-built extensions.
- acdha 12y agoThe Mozilla blog post answered all of these questions but the sophos click-bait had to leave them out to support their narrative: https://blog.mozilla.org/addons/2015/02/10/extension-signing-safer-experience/ https://blog.mozilla.org/addons/2015/02/10/extension-signing... The short answer is that you can still have AMO sign an extension even if you distribute elsewhere (e.g. the way password managers like to ship one installer for everything) and the nightly / developer builds will allow unsigned extensions for obvious reasons. They are planning a private-app signing process but the details aren't public yet.
- blueskin_ 12y agoThey get thrown under the bus.
- thinkcontext 12y agoThis is similar to what Safari does for their extensions, as a policy it sounds reasonable. However, the part about the possibility of manual review if automated checks fail is alarming. I self distribute my extension because I found the AMO process to be infuriating. The extension would pass review then not pass and require changes. Each step in the process requires a multi-week wait in a queue. Unanswered requests for clarification, lost communications, etc, etc. After months of trying I gave up, I know I am not alone in this. The possibility of having to go back into that Kafka-esque maze is extremely disconcerting. The manual review possibility should also be a concern of all current AMO users, as it has the potential to lengthen current queue wait times.
- amyjess 12y agoWell, looks like I'm switching to Iceweasel.
- mcovey 12y agoI'm not sure how this will bode for my own extension, which I maintain for my own private use to do whatever comes to mind, like redirecting certain pages, applying userscripts and css files, and some other customization. Also I wouldn't have tried out all the spiffy new ES6 features that Firefox supports except that I can freely use them because it can only run in Firefox anyway. One thing I did realize in learning how to make these extensions is that, unlike with Chrome, Firefox extensions can do anything any other executable file on your computer can do, or at least, they can move, delete, edit, and rename any file anywhere on the hard drive, spawn any process, download anything and save it, so effectively all a malware author has to do is make the extension's install hook download their payload and execute it. It's a one liner to wipe out your $HOME (I have no idea if it will work I'm not going to try it!): require("sdk/system/child_process").spawn("/bin/rm", ["-rf", "~/*"]) I'm expecting/hopeful that there will be some kind of about:config flag to disable enforcing signed packages, it just seems typical of Mozilla to include such a feature for power users.
- blueskin_ 12y agoIf you read the blog, there won't be. Mozilla ditched any pretence of caring about people with an IQ over 75 long ago.