Clipboard access makes most users suspicious #159
Labels
No labels
bug
dependencies
duplicate
enhancement
good first issue
help wanted
invalid
question
wontfix
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference: Creepso/torrentio-scraper-backup#159
Loading…
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
When the average user browse to https://torrentio.strem.fun/ he gets a permission request to access his clipboard because of this line:
12286cba02/addon/lib/landingTemplate.js (L477)This makes most users suspicious of the add-on for obvious reasons, even though the intent was naive
https://bufferzonesecurity.com/clipboard-hijacking-attacks-and-how-to-prevent-them/
I suggest wrapping this action behind a button that will write the link to the clipboard instead of accessing it straight away
That is true, tho I don't see it as a big issue atm. I'll try to look into when I have time or I'll welcome a quality PR to improve this.