Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add UX considerations section #49

Open
mounirlamouri opened this issue Oct 5, 2015 · 5 comments
Open

Add UX considerations section #49

mounirlamouri opened this issue Oct 5, 2015 · 5 comments
Labels
Actionable Something that can be worked on

Comments

@mounirlamouri
Copy link
Member

No description provided.

@jyasskin
Copy link
Member

Do we have any security considerations, or is this just "There are no known security impacts of this feature."

@marcoscaceres
Copy link
Member

I don't know if we have gone through Mike's questionnaire. We should do that (maybe post the questions at the top, and we can all edit them and then put them in the spec?)

We should also provide a link to the repo asking people to report any privacy/security issues/concerns here.

@annevk
Copy link
Member

annevk commented Jul 20, 2016

There's obvious impacts, right? Poorly designed UX can lead to users exposing themselves to attackers.

@marcoscaceres
Copy link
Member

@annevk, absolutely. The same with presenting multiple permissions at once, which can lead to information overload.

@marcoscaceres marcoscaceres added the Actionable Something that can be worked on label Jun 17, 2021
@marcoscaceres marcoscaceres changed the title Add security considerations section Add UX considerations section Jun 17, 2021
@miketaylr
Copy link
Member

miketaylr commented Oct 1, 2021

A few ideas:

UAs should take care to present permission dialogs in such a way that users can understand the implications of a permission, etc. Permission fatigue is a thing, etc. Something about permission spam, etc. Security UX implications.

Some stuff for inspiration:
https://blog.nightly.mozilla.org/2019/04/01/reducing-notification-permission-prompt-spam-in-firefox/
https://www.w3.org/Privacy/permissions-ws-2018/report.html might have something useful to learn as well.

https://www.w3.org/Privacy/permissions-ws-2018/papers/martin-thomson.pdf is pretty decent as well.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Actionable Something that can be worked on
Projects
None yet
Development

No branches or pull requests

5 participants