Landry Breuil committed his pledge(2) work along with the 60.0 update to -current!

Other interesting/noteworthy changes:
• Pocket extension is disabled by default.
• "activity-stream/sponsored content" is no longer displayed by default in new tabs.

It's still a pretty broad set of promises, compared to chrome. But at least content processes cannot fork/exec, and even a broad pledge is a significant attack surface reduction that can be further reduced over time. Nice work landry@!

Sign in to participate in the conversation

Server run by the main developers of the project 🐘 It is not focused on any particular niche interest - everyone is welcome as long as you follow our code of conduct!