Skip to content

Bug 2056556 - Require local opt-in to sync passwords and payment methods#1175

Open
beurdouche wants to merge 1 commit into
mozilla:enterprise-mainfrom
beurdouche:bug-2056556-sync-passwords-consent
Open

Bug 2056556 - Require local opt-in to sync passwords and payment methods#1175
beurdouche wants to merge 1 commit into
mozilla:enterprise-mainfrom
beurdouche:bug-2056556-sync-passwords-consent

Conversation

@beurdouche

Copy link
Copy Markdown
Member

In enterprise builds the Sync key is provisioned by the management console, so synced data is encrypted at rest but not end-to-end encrypted (the organization can access it).

Prevent the Sync enterprise policy from force-enabling the passwords and payment-method engines. They now default off in enterprise builds and can only be turned on by an explicit local choice; the policy may still disable (lock off) these engines. Other engines are unaffected.

Add a red warning in about:preferences - in both the redesigned and legacy Sync panes and in the "Choose what to sync" dialog - stating that synced data is encrypted at rest but not end-to-end encrypted, with passwords and payment methods called out as opt-in only.

Also fixes stale helper imports in SyncPolicy.sys.mjs and adds xpcshell and browser tests (gated to enterprise builds).

…ods and warn that enterprise Sync is not end-to-end encrypted

In enterprise builds the Sync key is provisioned by the management console, so synced data is encrypted at rest but not end-to-end encrypted (the organization can access it).

Prevent the Sync enterprise policy from force-enabling the passwords and payment-method engines. They now default off in enterprise builds and can only be turned on by an explicit local choice; the policy may still disable (lock off) these engines. Other engines are unaffected.

Add a red warning in about:preferences - in both the redesigned and legacy Sync panes and in the "Choose what to sync" dialog - stating that synced data is encrypted at rest but not end-to-end encrypted, with passwords and payment methods called out as opt-in only.

Also fixes stale helper imports in SyncPolicy.sys.mjs and adds xpcshell and browser tests (gated to enterprise builds).
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant