Hacker News new | ask | show | jobs
by DCoder 2834 days ago
> Also, where in that Bugzilla thread are bookmark descriptions mentioned as being an attack vector? I can't find anything about it.

I was wondering the same thing. The only relevant item I could find is in bug 1402890 [0] linked in the very last comment. It says:

> Websites dictating what goes in a user's bookmark without any way to change that would be a terrible idea. Doubly so if it's secretly stored without even being viewable.

To me that seems like a valid privacy concern, but it should be solvable without discarding the entire feature. The "it's too hard to maintain this, let's just drop it, some volunteer will implement this again if it's needed (yeah, it won't integrate with our own UI like the current solution does, so what)" mindset in both those bugs just reeks of CADT [1].

[0] https://bugzilla.mozilla.org/show_bug.cgi?id=1402890#c3

[1] https://www.jwz.org/doc/cadt.html