Security/Anti tracking policy: Difference between revisions

Jump to navigation Jump to search
Update the Policy Exceptions section of the Mozilla Anti-Tracking Policy (July 9, 2019)
mNo edit summary
(Update the Policy Exceptions section of the Mozilla Anti-Tracking Policy (July 9, 2019))
Line 42: Line 42:


== Policy Exceptions ==
== Policy Exceptions ==
We will not block specific uses of the techniques described above when they are used to lower the risk of specific user harm. The following use cases are permissible under this policy:
We will block the practices described above when the party using them is classified as a tracker. We [https://wiki.mozilla.org/index.php?title=Security/Anti_tracking_policy&diff=1214837&oldid=1214836#Policy_Exceptions previously offered] a set of exceptions independent from tracker classification, but as of July 9, 2019 we will no longer grant new exceptions. We will stop honoring the current set of exceptions in a future version of Firefox.
 
# Improving the security of client authentication. For example, a website may save device configuration details after a user logs in to determine when an unexpected device attempts to login at a future date. By doing so, the site mitigates the risk of unauthorized access to a user’s account.
# Preventing the creation of fraudulent accounts or the completion of fraudulent purchases. For example, a payment processor may examine device properties when processing a payment to determine whether the purchaser is a bot. This allows the payment processor to prevent bots from making purchases with stolen credit cards. Similarly, a captcha provider may use device information to decide whether to prompt users to manually solve a captcha.
 
In some cases techniques are dual-use, such that they are used both to lower the risk of user harm and for purposes unrelated to user harm, including tracking. We will handle these techniques on a case-by-case basis depending on the potential user harm they create and mitigate. We will consider requests for other classes of exceptions on the basis of whether they serve to address specific user interests or harms. Requests for such exceptions should be directed to [mailto:antitracking-policy@mozilla.com antitracking-policy@mozilla.com].
Confirmed users
657

edits

Navigation menu