Origin Enforcer Firefox

Origin Enforcer

提供元: sje
Restores the control to the user and provides a security sandbox for cross domain and third party calls from websites. Websites now need your permission to make background cross domain calls, protecting you from malware and mass surveillance.

特徴と機能

This is what browsers are supposed to do by default. In a proper security model, users have control, and give permissions to the websites to perform background requests to third party servers flowing out of websites. Websites should declare what third parties they use, why, and who owns the domains. But they don't, and calls especially to google and facebook in many sites let them track you everywhere. Websites secretly are making huge numbers of calls with cookies to other places on the internet without you knowing at all.

Users should decide which third party domains are ok! For too long, corporations like google and facebook have undermined internet security and hacked the http protocol to bypass security controls and take away the privacy and security of internet users. They have intentionally violated the basics of user controlled sandbox security model for mass surveillance.

This plugin intends to restore the power to the user in deciding cross domain and third party calls from websites. Websites should only make calls back to themselves, a simple principal called 'single origin' that protects users against viruses, security concerns, and surveillance. In this cross origin sandbox, the websites need your permission to make cross domain calls.

Manage which calls are allowed in the interface. You can upvote domains you allow, or downvote them to. block them. By default, only calls back the websites own domain is allowed. This will break many sites by default. Good sites, like duckduckgo.com work fine. Terrible sites may not come up at all. Some sites may be missing images since they come from another domain. If you want to see blocked images, right click the image, choose inspect element, and see the src, which domain it is coming from. Then you can allow this domain. Some sites will need many third party domains to work unfortunately. This is a simple way to allow everything for each site. You can also choose allow everything except cookies for sites that do not have a login and have should have no need for cookies.

Unfortunately browsers and websites today have granted themselves control to make any calls to anybody with cookies. This is all done under the covers, in secret, and causes a plague of malware, security issues, flood of internet spam calls and mass surveillance. Websites insert tracking and third party cross domain calls without regard, and browsers blindly go ahead and make these calls in secret without consent of the user to enable mass surveillance.

Corporations such as Google (via chrome, android, plugins, etc) and Facebook (via facebook.com and plugins) intentionally violate basic principals of user ownership and control, spread fake plugins, create fake sandboxes, and undermined security and privacy without regard for basic security norms. It is our job to stop them! This plugin restores the basic right that users control what third parties can receive calls from any site. Sites should only call back to themselves... and no others. They should referencing third party software and scripts, not load them from third parties.

This plugin enforces these basic rules regardless of what the websites wants to do, and takes back the control to the user from the broken security model of the browsers and websites. It stops the dangerous and sloppy web coding practices. It also makes visible the sloppy mess of cross domain calls going on behind the scenes on so many websites, showing the shocking state of the situation, and showing what is going on behind the scenes in secret without any user consent.

At a minimum, this plugin will expose the problem, showing the huge number of calls to thirdparties. Any site using many third parties should be rejected. You can fine tune what calls are allowed, such as allowing some needed calls, but rejecting others like to facebook or google or ad services.

ユーザー成長とダウンロード統計

Manifest V2 Add-on
提供元:
sje
日間ユーザー:
1
評価:
3.60
(5)
バージョン:
2.0 最終更新日: 2020-04-01
バージョンコード:
4995265
作成日:
2019-04-20
リスク:
High risk impact Low risk likelihood
権限:
サイズ:
31.52KB
メールアドレス:
ev*****@hotmail.com
詳細説明:
詳細な説明を見る
ソース:
Firefoxアドオンストア
データ取得日:
2026-06-20
統計とランキングを比較:

ランキング

開発者に問い合わせる

Chrome-Stats はこの Firefoxアドオン を所有していません。以下の情報を使用して、Firefoxアドオン 開発者にお問い合わせください。
開発元:
sje
Firefoxアドオンストア
https://addons.mozilla.org/firefox/addon/origin-enforcer/
電子メール:
ev*****@hotmail.com

ユーザーレビュー

Totally rubbish, malicious extension. Brakes GMail attachment download. IMPOSSIBLE to know that this crappy extension brakes that - because no informative icon. I wasted 1 hour of my time debugging extensions and disabling 100 of good security extensions, which actually worked fine. I advise to stay away of this extension, it can't be used and brakes websites.
による Se*****, 2024-11-26

Archive of a previous review, and the developer's response: https://web.archive.org/web/20200402064106/https://addons.mozilla.org/en-GB/firefox/addon/origin-enforcer/reviews/1467641/ The December 2019 screen recording is also archived: https://web.archive.org/web/20191227155912/https://s.put.re/T6dHDQVA.mp4 Side note: the extension promotes DuckDuckGo, I prefer Startpage: https://www.startpage.com/ https://forum.privacytools.io/t/-/1989/16?u=grahamperrin
による gr*****, 2020-04-02
すべてのユーザーレビューを見る ›

Origin Enforcerは安全ですか?

リスク影響度
リスク影響度は、拡張機能がアクセスできる追加の権限のレベルを測定します。低リスク影響度の拡張機能は多くの害を及ぼすことができませんが、高リスク影響度の拡張機能はパスワードの盗難、セキュリティ設定の回避、個人データへのアクセスなど、多くの被害を与える可能性があります。高リスク影響度の拡張機能は必ずしも悪意があるわけではありません。しかし、悪意を持つようになると、非常に有害になる可能性があります。

Origin Enforcerはブラウザとデータのセキュリティに影響を与える可能性のある機密権限をいくつか必要とします。インストール前に注意してください。

リスク影響度分析の詳細
  • Critical Allows access to all websites, posing a significant security risk as it can monitor and modify data from any visited site.
  • Critical ****** ****** ** ******* ***** ***** *** ** **** ** ***** **** ******** ****** *** ******** ********** * ******* ********
  • High ****** *** ********* ** ******* *** ******* ******* ** ****** *** *** ******** ******
リスク可能性
リスク可能性は、Firefoxアドオンが悪意を持つ可能性を測定します。これは、Firefoxアドオンストアにおける発行者とFirefoxアドオンの評判、Firefoxアドオンが存在している期間、およびFirefoxアドオンに関する他のシグナルによって決定されます。私たちのアルゴリズムは完璧ではなく、悪意のある拡張機能を検出する新しい方法を発見するにつれて変更される可能性があります。Firefoxアドオンをインストールする際には常に注意することをお勧めします。

Origin Enforcerはかなり良い評判を得ており、おそらく信頼できます。

リスク可能性分析の詳細
  • High This extension has low user count. Unpopular extensions may not be stable or safe.
  • Low **** ********* *** ******* **** **** * ****** **** ***** ******** *** **** ****** ** ** ****** *** *****
  • Low **** ********* *** ***** **** **** * ****** **** ***** ********** *** **** ****** ** ** ****** *** *****
  • Good **** ********* *** **** **** *******
Extension Guard
エクステンションガード

Extension Guardで使用中のすべての拡張機能を発見し、リスクを分析し、ブロックポリシーを適用します

ブラウザを安全にしましょう
完全なリスク分析の詳細を見るにはアップグレードしてください

ベストのOrigin Enforcer代替案

Origin Enforcerに類似したFirefox add-onをいくつか紹介します: