Closed Bug 1637143 Opened 5 years ago Closed 5 years ago

Extend storage access API user interaction permission lifetime to 45 days

Categories

(Core :: Privacy: Anti-Tracking, task, P1)

task

Tracking

()

RESOLVED FIXED
mozilla79
Tracking Status
firefox79 --- fixed

People

(Reporter: englehardt, Assigned: johannh, NeedInfo)

References

Details

Attachments

(1 file)

We've identified certain use cases that require consistent cookies on time windows of 30 days (e.g., making a monthly purchase or paying a monthly bill). Extending to 45 days would help mitigate this.

The privacy impact to cookie purging is minimal, but it also means that third-parties that have been granted storage access will have that access for longer. Ideally, we can move to a use-time based metric for purging.

Severity: -- → S3
Priority: -- → P1

Note that unless we put in place some specific hack to keep this at 30 days for cookie blocking, this will affect all parts of ETP. I think that's probably fine, just wanted to call it out.

Assignee: nobody → jhofmann
Status: NEW → ASSIGNED
Summary: Extend cookie purging lifetime to 45 days → Extend storage access API user interaction permission lifetime to 45 days
Pushed by jhofmann@mozilla.com: https://hg.mozilla.org/integration/autoland/rev/469ca5c41848 Extend storage access API user interaction permission lifetime to 45 days. r=baku
Status: ASSIGNED → RESOLVED
Closed: 5 years ago
Resolution: --- → FIXED
Target Milestone: --- → mozilla79
Flags: needinfo?(senglehardt)
You need to log in before you can comment on or make changes to this bug.

Attachment

General

Created:
Updated:
Size: