X
Нажмите здесь, чтобы перейти на мобильную версию сайта.

Форум поддержки

I am horrified to find all my credit card details after an online purchase, held in recovery.js, or sessionstore.js. How is this secure?.

Размещено

I was attempting to restore my tabs and as it wasn't working properly, I was editing a sessionstore.js or recovery.js looking for URLs that were present so I could re-open the tabs to recreate what I had before.

To my horror, on one of the tab details I find stored in the sessionstore/recovery, all the details from a purchase page I had filled in to buy a tour, had not only my name and address, but telephone number, and address. That would be bad enough, but also stored was the complete details of my credit card which I had used for the purchase. That included the name on the credit card, expiry date, and security code. It probably also had the card number, but I had been doing some editing so may have accidentally deleted it before I noticed what was in there.

How is this a regard by Mozilla for my privacy and security? When will this be rectified? I hope soon, as this sort of information should not be left around/stored on a computer following it's use.

I am not going to share the file details with you for obvious reasons, so I am not sure if the attached information will be any use to you.

Rgds

I was attempting to restore my tabs and as it wasn't working properly, I was editing a sessionstore.js or recovery.js looking for URLs that were present so I could re-open the tabs to recreate what I had before. To my horror, on one of the tab details I find stored in the sessionstore/recovery, all the details from a purchase page I had filled in to buy a tour, had not only my name and address, but telephone number, and address. That would be bad enough, but also stored was the complete details of my credit card which I had used for the purchase. That included the name on the credit card, expiry date, and security code. It probably also had the card number, but I had been doing some editing so may have accidentally deleted it before I noticed what was in there. How is this a regard by Mozilla for my privacy and security? When will this be rectified? I hope soon, as this sort of information should not be left around/stored on a computer following it's use. I am not going to share the file details with you for obvious reasons, so I am not sure if the attached information will be any use to you. Rgds

Изменено kiwimuso

Выбранное решение

We don't live here.


The people who answer questions here, for the most part, are other Firefox users volunteering their time (like me), not Mozilla employees or Firefox developers.

If you want to leave feedback for Firefox developers, you can go to the Firefox Help menu and select Submit Feedback... or use this link. Your feedback gets collected by a team of people who read it and gather data about the most common issues.

Прочитайте этот ответ в контексте 1

Дополнительные сведения о системе

Установленные плагины

  • Shockwave Flash 27.0 r0

Приложение

  • Firefox 55.0.3
  • User Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:55.0) Gecko/20100101 Firefox/55.0
  • URL поддержки: https://support.mozilla.org/1/firefox/55.0.3/WINNT/en-US/

Расширения

  • Adblock Plus 2.9.1 ({d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d})
  • Classic Theme Restorer 1.7.0 (ClassicThemeRestorer@ArisT2Noia4dev)
  • HP Smart Web Printing 4.51 (smartwebprinting@hp.com) (Неактивно)

Javascript

  • incrementalGCEnabled: True

Графика

  • adapterDescription: Intel(R) HD Graphics 4000
  • adapterDescription2:
  • adapterDeviceID: 0x0166
  • adapterDeviceID2:
  • adapterDrivers: igdumd64 igd10umd64 igd10umd64 igdumd32 igd10umd32 igd10umd32
  • adapterDrivers2:
  • adapterRAM: Unknown
  • adapterRAM2:
  • adapterSubsysID: 056e1028
  • adapterSubsysID2:
  • adapterVendorID: 0x8086
  • adapterVendorID2:
  • crashGuards: []
  • currentAudioBackend: wasapi
  • direct2DEnabled: False
  • direct2DEnabledMessage: [u'blockedMismatchedVersion']
  • directWriteEnabled: True
  • directWriteVersion: 6.2.9200.22164
  • driverDate: 3-26-2012
  • driverDate2:
  • driverVersion: 8.951.9.1000
  • driverVersion2:
  • failures: [u'CP+[GFX1-]: Mismatched driver versions between the registry 8.951.9.1000 and DLL(s) 8.15.10.2696, reported.']
  • featureLog: {u'fallbacks': [], u'features': [{u'status': u'available', u'description': u'Compositing', u'name': u'HW_COMPOSITING', u'log': [{u'status': u'available', u'type': u'default'}]}, {u'status': u'blacklisted', u'description': u'Direct3D11 Compositing', u'name': u'D3D11_COMPOSITING', u'log': [{u'status': u'available', u'type': u'default'}, {u'status': u'blacklisted', u'message': u'#BLOCKLIST_', u'type': u'env'}]}, {u'status': u'unavailable', u'description': u'Direct2D', u'name': u'DIRECT2D', u'log': [{u'status': u'unavailable', u'message': u'Direct2D requires Direct3D 11 compositing', u'type': u'default'}]}, {u'status': u'disabled', u'description': u'Direct3D11 hardware ANGLE', u'name': u'D3D11_HW_ANGLE', u'log': [{u'status': u'unavailable', u'message': u'D3D11 compositing is disabled', u'type': u'default'}, {u'status': u'disabled', u'message': u'D3D11 compositing is disabled', u'type': u'env'}]}, {u'status': u'unavailable', u'description': u'GPU Process', u'name': u'GPU_PROCESS', u'log': [{u'status': u'available', u'type': u'default'}, {u'status': u'unavailable', u'message': u'Not using GPU Process since D3D11 is unavailable', u'type': u'env'}]}, {u'status': u'unavailable', u'description': u'WebRender', u'name': u'WEBRENDER', u'log': [{u'status': u'opt-in', u'message': u'WebRender is an opt-in feature', u'type': u'default'}, {u'status': u'unavailable', u'message': u'ANGLE is disabled', u'type': u'runtime'}]}]}
  • indices: [0]
  • info: {u'ApzWheelInput': 1, u'ApzDragInput': 1, u'AzureFallbackCanvasBackend': u'cairo', u'AzureCanvasAccelerated': 0, u'AzureCanvasBackend': u'skia', u'AzureContentBackend': u'skia'}
  • isGPU2Active: False
  • numAcceleratedWindows: 0
  • numAcceleratedWindowsMessage: [u'blockedMismatchedVersion']
  • numTotalWindows: 1
  • webgl1DriverExtensions: GL_ANGLE_depth_texture GL_ANGLE_framebuffer_blit GL_ANGLE_framebuffer_multisample GL_ANGLE_instanced_arrays GL_ANGLE_lossy_etc_decode GL_ANGLE_pack_reverse_row_order GL_ANGLE_request_extension GL_ANGLE_robust_client_memory GL_ANGLE_texture_compression_dxt3 GL_ANGLE_texture_compression_dxt5 GL_ANGLE_texture_usage GL_ANGLE_translated_shader_source GL_CHROMIUM_bind_generates_resource GL_CHROMIUM_bind_uniform_location GL_CHROMIUM_copy_compressed_texture GL_CHROMIUM_copy_texture GL_CHROMIUM_sync_query GL_EXT_blend_minmax GL_EXT_color_buffer_half_float GL_EXT_debug_marker GL_EXT_discard_framebuffer GL_EXT_disjoint_timer_query GL_EXT_draw_buffers GL_EXT_frag_depth GL_EXT_map_buffer_range GL_EXT_occlusion_query_boolean GL_EXT_read_format_bgra GL_EXT_robustness GL_EXT_sRGB GL_EXT_shader_texture_lod GL_EXT_texture_compression_dxt1 GL_EXT_texture_filter_anisotropic GL_EXT_texture_format_BGRA8888 GL_EXT_texture_rg GL_EXT_texture_storage GL_EXT_unpack_subimage GL_KHR_debug GL_NV_EGL_stream_consumer_external GL_NV_fence GL_NV_pack_subimage GL_NV_pixel_buffer_object GL_OES_EGL_image GL_OES_EGL_image_external GL_OES_compressed_ETC1_RGB8_texture GL_OES_depth32 GL_OES_element_index_uint GL_OES_get_program_binary GL_OES_mapbuffer GL_OES_packed_depth_stencil GL_OES_rgb8_rgba8 GL_OES_standard_derivatives GL_OES_texture_float GL_OES_texture_float_linear GL_OES_texture_half_float GL_OES_texture_half_float_linear GL_OES_texture_npot GL_OES_vertex_array_object
  • webgl1Extensions: ANGLE_instanced_arrays EXT_blend_minmax EXT_color_buffer_half_float EXT_frag_depth EXT_shader_texture_lod EXT_texture_filter_anisotropic EXT_disjoint_timer_query MOZ_debug OES_element_index_uint OES_standard_derivatives OES_texture_float OES_texture_float_linear OES_texture_half_float OES_texture_half_float_linear OES_vertex_array_object WEBGL_color_buffer_float WEBGL_compressed_texture_s3tc WEBGL_debug_renderer_info WEBGL_debug_shaders WEBGL_depth_texture WEBGL_draw_buffers WEBGL_lose_context MOZ_WEBGL_lose_context MOZ_WEBGL_compressed_texture_s3tc MOZ_WEBGL_depth_texture
  • webgl1Renderer: Google Inc. -- ANGLE (Software Adapter Direct3D11 vs_5_0 ps_5_0)
  • webgl1Version: OpenGL ES 2.0 (ANGLE 2.1.0.dec065540d5f)
  • webgl1WSIInfo: EGL_VENDOR: Google Inc. (adapter LUID: 0000000000000000) EGL_VERSION: 1.4 (ANGLE 2.1.0.dec065540d5f) EGL_EXTENSIONS: EGL_EXT_create_context_robustness EGL_ANGLE_d3d_texture_client_buffer EGL_ANGLE_query_surface_pointer EGL_ANGLE_window_fixed_size EGL_ANGLE_keyed_mutex EGL_ANGLE_surface_orientation EGL_NV_post_sub_buffer EGL_KHR_create_context EGL_EXT_device_query EGL_KHR_image EGL_KHR_image_base EGL_KHR_gl_texture_2D_image EGL_KHR_gl_texture_cubemap_image EGL_KHR_gl_renderbuffer_image EGL_KHR_get_all_proc_addresses EGL_KHR_stream EGL_KHR_stream_consumer_gltexture EGL_NV_stream_consumer_gltexture_yuv EGL_ANGLE_flexible_surface_compatibility EGL_ANGLE_create_context_webgl_compatibility EGL_CHROMIUM_create_context_bind_generates_resource EGL_EXTENSIONS(nullptr): EGL_EXT_client_extensions EGL_EXT_platform_base EGL_EXT_platform_device EGL_ANGLE_platform_angle EGL_ANGLE_platform_angle_d3d EGL_ANGLE_device_creation EGL_ANGLE_device_creation_d3d11 EGL_ANGLE_experimental_present_path EGL_KHR_client_get_all_proc_addresses
  • webgl2DriverExtensions: -
  • webgl2Extensions: -
  • webgl2Renderer: WebGL creation failed: * Refused to create WebGL2 context because of blacklist entry:
  • webgl2Version: -
  • webgl2WSIInfo: -
  • windowLayerManagerRemote: True
  • windowLayerManagerType: Basic

Изменённые настройки

Разное

  • User JS: Нет
  • Доступность: Нет
Размещено

Полезный ответ

Well it's nice to see that Mozilla is so9 concerned about privacy, that NOBODY deigned to reply to this. Hopeless, seemingly just like most so-called support/service desks.

Thanks guys and girls (delete whatever inapplicable)

Well it's nice to see that Mozilla is so9 concerned about privacy, that NOBODY deigned to reply to this. Hopeless, seemingly just like most so-called support/service desks. Thanks guys and girls (delete whatever inapplicable)
FredMcD
  • Top 10 Contributor
4254 решений 59583 ответов
Размещено

Выбранное решение

We don't live here.


The people who answer questions here, for the most part, are other Firefox users volunteering their time (like me), not Mozilla employees or Firefox developers.

If you want to leave feedback for Firefox developers, you can go to the Firefox Help menu and select Submit Feedback... or use this link. Your feedback gets collected by a team of people who read it and gather data about the most common issues.

We don't live here. The people who answer questions here, for the most part, are other Firefox users volunteering their time (like me), not Mozilla employees or Firefox developers. If you want to leave feedback for Firefox developers, you can go to the Firefox ''Help'' menu and select ''Submit Feedback...'' or use [https://qsurvey.mozilla.com/s3/FirefoxInput/ this link]. Your feedback gets collected by a team of people who read it and gather data about the most common issues.
Размещено

Задавший вопрос

Thanks Fred, I suspected as much but wasn't sure where to go other than here. Much the same as Google, hellishly hard to actually get to talk to them about a specific problem.

It does, of course, say Support at the top of the page, so silly me assumed that it would be Mozilla doing the supporting, or at least taking an interest in what people were saying.

Thanks Fred, I suspected as much but wasn't sure where to go other than here. Much the same as Google, hellishly hard to actually get to talk to them about a specific problem. It does, of course, say Support at the top of the page, so silly me assumed that it would be Mozilla doing the supporting, or at least taking an interest in what people were saying.

Изменено kiwimuso

cor-el
  • Top 10 Contributor
  • Moderator
17525 решений 158458 ответов
Размещено

Maybe consider to open a New Private Window if you are accessing web pages that require to enter privacy sensitive data. In PB mode no data is stored to the hard drive, but you also lose your work in case of a crash and you would have to bookmark links you want to keep since no history is kept.

Maybe consider to open a New Private Window if you are accessing web pages that require to enter privacy sensitive data. In PB mode no data is stored to the hard drive, but you also lose your work in case of a crash and you would have to bookmark links you want to keep since no history is kept.