[TYPO3-dev] [TYPO3-v4] Removing the feature "Enable extensions without review (basic security check)" from EM

Dmitry Dulepov dmitry.dulepov at gmail.com
Thu May 13 08:02:57 CEST 2010


Hi!

Oliver Klee wrote:
> I propose removing the checkbox, and adding a warning flash message
> (with a warning about that extensions from the TER might be insecure)
> the first time a user imports an extension from the TER. We then can
> store in BE_USER->uc whether the user already has seen that warning.

According to stadies, people do not normally read such messages. I think
that message could be permanent in the "Import" part of EM.

-- 
Dmitry Dulepov
TYPO3 expert / TYPO3 core&security teams member
Twitter: http://twitter.com/dmitryd
Read more @ http://dmitry-dulepov.com/




More information about the TYPO3-dev mailing list