• TheEntity@kbin.social
      link
      fedilink
      arrow-up
      8
      ·
      1 year ago

      To be specific: from trusted developers. Installing them only from the official repository (is it still possible to reasonably install them any other way?) won’t help if a dev sells such an addon. On the other hand I cannot imagine someone like Raymond Hill (the uBlock Origin dev) doing it, considering his track record.

  • djsaskdja@reddthat.com
    link
    fedilink
    English
    arrow-up
    6
    ·
    1 year ago

    Exactly why most enterprise organizations disable them. You should too if you’re doing anything sensitive data.

    • munderzi@feddit.ch
      link
      fedilink
      English
      arrow-up
      1
      arrow-down
      1
      ·
      1 year ago

      That’s why on my work PC I use a completely vanilla Firefox, gotta live with the ads. But I’m not risking giving full access to website content to any extension

  • deleted @sh.itjust.works
    link
    fedilink
    English
    arrow-up
    6
    arrow-down
    1
    ·
    1 year ago

    To add to the blog post, if you use user scripts, utilize your manager’s blacklist and learn REGEX.

    If needed, use Group Policy, Regedit or .plists on macOS to blacklist domains to prevent an extension from running on them. As an example, I use Shutup.css to block comments online, but on something like Lemmy, I want to see comments as that’s primarily how content is created and adding it to my extension domain blacklist prevents the extension from running on the website or any lemmy domains.

  • Franzia@lemmy.blahaj.zone
    link
    fedilink
    English
    arrow-up
    3
    ·
    1 year ago

    I thought my ISP already had this data and is selling it. Should I go make sure all my extensions are 100% kosher?

  • Dariusmiles2123@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    2
    ·
    1 year ago

    It’s interesting to read as I never thought about the vulnerability these extensions are.

    I guess you should limit the number of extensions you have.