|
|
|
|
|
by angry_octet
3285 days ago
|
|
In reply to you first question, no, because it is my computer, it runs with same origin policy in the sandbox. And I've chosen to enable js for that site. So it couldn't do what this extension does, which is cross site data transfer. If the end user clicks the 'do not show again' checkbox on the message, sure. But it should still be graphically represented whenever you use an insecure cloud plugin, e.g. via an unlocked padlock sub icon if it doesn't use TLS, maybe a cloud sub-icon to represent someone else's computer. |
|