Jan
15
Security
What Data a Form Recovery Extension Should Never Touch
A form recovery extension is designed to be your safety net, catching the text you type so you never lose a draft again. But a safety net shouldn’t be a fishing net—it shouldn’t just grab everything in its path.
To remain secure, a well-designed extension must have strict boundaries. At Form Recover, we believe there are three specific “No-Fly Zones” that an extension should never touch.
1. Password Fields (type="password") This is the most obvious rule, but also the most critical. Any extension that attempts to save data from a field where the characters are obscured (dots or asterisks) is a security risk.
3 min read
Read now