Earlier quoted context omitted.
This has zero to do with privacy and security, because the APIs being removed only have to do with modifying pages, the ability to read data from pages is unaffected. The only real consumer of these APIs are ad blockers, they are quite obviously being specifically targeted. Painting this as all about user safety when it handsomely rewards Google's largest profit center is farcical. (the new static list of 50k filters…
The extensions that want to do blocking would then not need to request permission to read and modify pages. As users we could pick adblockers that didn't require permission to ready all our activity. How is reducing the required permissions (significantly) not an enhancement to user safety. Your argument that we always must give extension authors full permissions to get anything done is a pathetic one frankly.
Google Just Gave 2B Chrome Users a Reason to Switch to Firefox
51–60 of 66 posts
Re: Google Just Gave 2B Chrome Users a Reason to Switch to Firefox
#52I use Adguard DNS. It can help because it work at DNS Level to block Advertiser Domain. https://adguard.com/en/adguard-dns/overview.html
This was insightful from Pieter Levels Twitter: https://twitter.com/levelsio/status/1054985994838130688 > The accidental thing nobody noticed is how @Cloudflare is suddenly in the best position now to take over the Web Analytics industry now that adblockers are all blocking JS-level Google Analytics, since Cloudflare can track users on the DNS-level So once DNS blocking becomes the norm, the power to do evil will swi…
Re: Google Just Gave 2B Chrome Users a Reason to Switch to Firefox
#53It is worth noting that revamping the browser extension permissions model is something that should definitely be done. Browser extensions up until this point have been a massive security hole: they basically get read/write permissions on every web page you visit. Of course, content blocking could've been part of that new security model. As Google tightens its grip, I wouldn't be surprised if someone starts a genuine…
No, that's a very misleading use of the term "security hole". By that definition, every piece of software on your computer is a "massive security" risk. Heck, even Chrome itself is a massive security hole since it can see the content of every page you visit.
I think it's worth reacting strongly to this argument because it's exactly the kind of statement that muddies the waters to convincing people that they shouldn't have the option of having full control of their own devices.
And I'm not saying there haven't been huge security issues with extensions. Just as there have been massive issues with any manner of software downloaded and installed. But requiring them to be open source and needing explicit user approval before install (unlike in older IE versions) addressed those issues pretty well, imo.
Edit: I would like to see changes that make it easier to observe when an extension is active and/or communicating with third party servers and/or writing to local storage for later transmittal (if that's possible).
Re: Google Just Gave 2B Chrome Users a Reason to Switch to Firefox
#54That's a bit hyperbolic though. I imagine a high percentage of HN users block ads, but the overall rate is more like 25%[1] I suppose Forbes' editors weren't so excited about "Google gives about 500M Chrome users a reason to switch..." 1: https://www.statista.com/statistics/804008/ad-blocking-reach...
And it's even worse coming from an ad company. Undermines trust massively, even for people who've never changed a default (no) privacy setting.
Re: Google Just Gave 2B Chrome Users a Reason to Switch to Firefox
#55It is worth noting that revamping the browser extension permissions model is something that should definitely be done. Browser extensions up until this point have been a massive security hole: they basically get read/write permissions on every web page you visit. Of course, content blocking could've been part of that new security model. As Google tightens its grip, I wouldn't be surprised if someone starts a genuine…
> Browser extensions up until this point have been a massive security hole No, that's a very misleading use of the term "security hole". By that definition, every piece of software on your computer is a "massive security" risk. Heck, even Chrome itself is a massive security hole since it can see the content of every page you visit. I think it's worth reacting strongly to this argument because it's exactly the kind of…
Well, yes. There’s a reason sandboxing is coming more and more to the desktop.
Re: Google Just Gave 2B Chrome Users a Reason to Switch to Firefox
#56I use Adguard DNS. It can help because it work at DNS Level to block Advertiser Domain. https://adguard.com/en/adguard-dns/overview.html
A pfSense machine with pfBlockerNG is open source, fully customizable, and can block at the DNS and IP level.
Since blocking content effectively changes how the web looks, and can occasionally break web sites, I'd rather have full control over the service than to pay someone to configure it for me.
Plus, the BSD camp has yet to let me down. :)
Re: Google Just Gave 2B Chrome Users a Reason to Switch to Firefox
#57That's a bit hyperbolic though. I imagine a high percentage of HN users block ads, but the overall rate is more like 25%[1] I suppose Forbes' editors weren't so excited about "Google gives about 500M Chrome users a reason to switch..." 1: https://www.statista.com/statistics/804008/ad-blocking-reach...
Re: Google Just Gave 2B Chrome Users a Reason to Switch to Firefox
#58Earlier quoted context omitted.
> they basically get read/write permissions on every web page you visit. But you can select on which sites the extension is active. You can even make it only active when you click on it.
This isn't a browser feature, it's an AdBlock Plus feature. You're just switching off the blocking for certain sites, not turning off the extension itself in any meaningful way.
https://www.ghacks.net/2018/10/01/chrome-70-features-option-...
Re: Google Just Gave 2B Chrome Users a Reason to Switch to Firefox
#59Earlier quoted context omitted.
> they basically get read/write permissions on every web page you visit. But you can select on which sites the extension is active. You can even make it only active when you click on it.
Is this a new thing? Most of the time when I've installed extensions I've just seen an initial prompt that says the extension can view and modify your data on any page, so either agree & add, or get out.
https://www.ghacks.net/2018/10/01/chrome-70-features-option-...
Re: Google Just Gave 2B Chrome Users a Reason to Switch to Firefox
#60Earlier quoted context omitted.
Is this a new thing? Most of the time when I've installed extensions I've just seen an initial prompt that says the extension can view and modify your data on any page, so either agree & add, or get out.
Depends on whether you consider a 7 months old feature new or not. https://www.ghacks.net/2018/10/01/chrome-70-features-option-...
Edit: I don't like that it seems to not be the default though... if you don't see this option then it's the same situation as before.