[tor-bugs] #25658 [Applications/Tor Browser]: Activity 2.1: Improve user understanding and user control by clarifying Tor Browser's security features

Tor Bug Tracker & Wiki blackhole at torproject.org
Thu Nov 15 19:31:17 UTC 2018


#25658: Activity 2.1: Improve user understanding and user control by clarifying Tor
Browser's security features
-------------------------------------------+---------------------------
 Reporter:  isabela                        |          Owner:  antonela
     Type:  project                        |         Status:  assigned
 Priority:  High                           |      Milestone:
Component:  Applications/Tor Browser       |        Version:
 Severity:  Normal                         |     Resolution:
 Keywords:  ux-team, TorBrowserTeam201811  |  Actual Points:
Parent ID:                                 |         Points:
 Reviewer:                                 |        Sponsor:  Sponsor17
-------------------------------------------+---------------------------

Comment (by gk):

 Replying to [comment:65 antonela]:
 > Replying to [comment:64 mcs]:
 > > Replying to [comment:45 gk]:
 > > > One final thought: What do we do in the new design once a user flips
 a preference that is governed by our security controls essentially kicking
 themselves off that security level to something custom? Right now our UI
 gives the hint with the option to restore the default state. It seems to
 me we should keep that in the new UI as well.
 > >
 >
 > To be on the same page about this specific user story:
 > I'm a technical user at the safest mode and I cannot see a .svg content.
 I go to `about:config` and I enable .svg support. Then I'm back to my tab,
 I reload and see the blocked content now.

 Yes.

 > How do we want this kind of `Restore Defaults` work? per tab or global?

 Gobal. The preferences that are governed by the slider and causing the
 "custom" mode are global as well.

 > How this`Restore Defaults` works now? Does it put the current security
 setting level at default? or does it put the general settings to default?

 It keeps all prefs from the current level and which did not get flipped as
 they are the dialog and button mcs included above is shown. If defaults
 are restored the users goes back to the security level they were on before
 flipping prefs in `about:config`.

 > For both cases, I'd add an alert at the doorhanger and lead the user
 restore defaults at `about:preferences#security`, as illustrated in
 comment:55
 > https://marvelapp.com/a66fg97/screen/50343707

 Sounds good. We probably should grey out the security settings on the
 `about:preferences` page indicating additionally that the user is in
 custom mode until they restored reset they settings to one of the three
 defaults.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/25658#comment:67>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list