Closed Bug 251581 Opened 20 years ago Closed 20 years ago

Unmunged emails in bug reports leads to email harvesting

Categories

(Bugzilla :: Bugzilla-General, enhancement)

enhancement
Not set
normal

Tracking

()

RESOLVED DUPLICATE of bug 120030

People

(Reporter: damien.carbery, Assigned: justdave)

References

()

Details

User-Agent:       Mozilla/5.0 (X11; U; SunOS sun4u; en-US; rv:1.6) Gecko/20040211 Firefox/0.8
Build Identifier: Mozilla/5.0 (X11; U; SunOS sun4u; en-US; rv:1.6) Gecko/20040211 Firefox/0.8

When a bug report is viewed in Mozilla the email address of anyone who has
changed the bug report is visible as a mailto tag. This makes it very easy for
email addresses to be harvested.
My work email, which I do not use for personal email, has received some amounts
of spam. The only place outside the office that my email is known is in
bugzilla.gnome.org.

Reproducible: Always
Steps to Reproduce:
1. Submit a bug
2. View bug.
3. Add comment to bug.
4. View bug.

Actual Results:  
Email address appears of comment submitter appears in a mailto tag.

Expected Results:  
To protect commentators, the email address should be munged, like Yahoo! Groups
does e.g. http://groups.yahoo.com/group/perl-beginner/message/19251
As you can see Randall's email is munged.

I don't know how best to allow legitimate users of the installation of Bugzilla
contact those submitting comments, maybe using Bugzilla and letting it send
emails will suffice.
Gnome is running an outdated Bugzilla.

*** This bug has been marked as a duplicate of 120030 ***
Status: UNCONFIRMED → RESOLVED
Closed: 20 years ago
Resolution: --- → DUPLICATE
QA Contact: matty_is_a_geek → default-qa
You need to log in before you can comment on or make changes to this bug.