Đánh giá cho NoScript Security Suite
NoScript Security Suite bởi Giorgio Maone
Đánh giá bởi Người dùng Firefox 13551289
Xếp hạng 2 trong số 5
bởi Người dùng Firefox 13551289, 8 năm trướcOk, I just got the update and have to say I really hate the new version and am considering dumping it completely. There are a lot of reasons why.
Under the old version, when you visit a new website, it shows a popup saying that scripts are disabled and giving you a quick option to temporarily or permanently enable scripts for just that website. Under the new version, you don't even know if the scripts are blocked, and if the website is malfunctioning because it needs its scripts, or what.
Also, the new UI really sucks. Everything is all icons now and I don't have a clue what any of them do. Am I allowing scripts or blocking them? Am I permanently allowing them or just temporarily? You could at least give us the option to go back to the classic interface.
I've also noticed that for every single website I go to, I have to tell it not to allow XSS from that website to facebook.com. It's really annoying. There is no option to just say, don't allow XSS from anywhere to facebook.com. Under the old version, it only gave me an XSS warning for a certain few websites which I could then do an unsafe reload. Now it's like there's cross-scripts everywhere.
Ok so maybe a useful feature would be to allow for example facebook.com (seems to be the main offender here) when I'm ON facebook.com, but disable it when any other website tries to cross-script to it.
Anyway to sum it up, the new version nags me incessantly and isn't clear enough about what's going on for me to figure out how to allow the scripts I want and block the ones I don't. Please go back to the old version.
Under the old version, when you visit a new website, it shows a popup saying that scripts are disabled and giving you a quick option to temporarily or permanently enable scripts for just that website. Under the new version, you don't even know if the scripts are blocked, and if the website is malfunctioning because it needs its scripts, or what.
Also, the new UI really sucks. Everything is all icons now and I don't have a clue what any of them do. Am I allowing scripts or blocking them? Am I permanently allowing them or just temporarily? You could at least give us the option to go back to the classic interface.
I've also noticed that for every single website I go to, I have to tell it not to allow XSS from that website to facebook.com. It's really annoying. There is no option to just say, don't allow XSS from anywhere to facebook.com. Under the old version, it only gave me an XSS warning for a certain few websites which I could then do an unsafe reload. Now it's like there's cross-scripts everywhere.
Ok so maybe a useful feature would be to allow for example facebook.com (seems to be the main offender here) when I'm ON facebook.com, but disable it when any other website tries to cross-script to it.
Anyway to sum it up, the new version nags me incessantly and isn't clear enough about what's going on for me to figure out how to allow the scripts I want and block the ones I don't. Please go back to the old version.
Phản hồi của nhà phát triển
đã đăng 8 năm trước1) The UI shows you all the domains that are trying to run active content, just like before, but more compact. You can allow them individually (by assigning the TRUSTED preset), leave them not running (DEFAULT), blacklisting (UNTRUSTED) or even assign CUSTOM permissions. Not just that, but better than before if you can modify each preset on the fly and even see the minimum permissions needed for the site to work (they've got a pink background).
2) To assign the TRUSTED preset temporarily, you just click it once. To make it permanent, you click the clock icon and make it fade away (temporary->permanent).
3) The XSS filter now has a "Always block requests from a.com to b.com" option, that you can use exactly the way you say you want.
2) To assign the TRUSTED preset temporarily, you just click it once. To make it permanent, you click the clock icon and make it fade away (temporary->permanent).
3) The XSS filter now has a "Always block requests from a.com to b.com" option, that you can use exactly the way you say you want.
2.396 đánh giá
- Xếp hạng 5 trong số 5bởi Tony Klaus, một ngày trước
- Xếp hạng 5 trong số 5bởi Người dùng Firefox 19311874, 4 ngày trước
- Xếp hạng 2 trong số 5bởi Michael Rabinovsky, 10 ngày trướcNo Script is an incredibly useful add-on. In the past, I'd have given it five stars; it now gets only two (see issues below). All in all, I'd say it's still better to have it than not, but that's only because there is no better alternative, and there is no difference between having to completely disable it on a page versus not having it at all.
First of all, it would have gotten three due to the issues I list further down, but it gets two because of a major functionality problem that makes it obnoxious to use, and by its admission, not private in private windows.
In the past, when you set it to trust top-level domains, it would automatically set them to temp trusted; however, for whatever reason, it now sets them to "custom," for me, which functions the same as untrusted, and changing it doesn't even refresh the page for you.
The default setting handling is a huge inconvenience, but that is not where the problems end. You cannot restore previous functionality by manually setting the top-level domain to temp trust. To enable scripts on the page, you must set it to trust, which makes it permanently trusted, and keeps a log of every page you visit in private windows. If you try to change it to temp trust and refresh the page, it goes back to "custom."
Besides that, the description for the extension is outdated. Not only does it still mention Flash, but it also claims no loss of functionality when you need it, which is not true. In most cases, enabling some scripts will return the functionality you need, but there are several reasons why that's not always the case.
Sometimes, certain scripts you need will be on sub-domains of the top-level domain, and they need to be enabled separately; however, NoScript doesn't show them because it thinks they are part of the main domain, so you have no way to make the site work without completely disabling the addon for the page.
In other instances, sites won't load all the scripts until they load some other domains. For example, a CDN containing vital scripts might not appear on the list because it's called after an analytics script has run. There is no way to know that unless you enable each script on the list, one by one. The domain doesn't need to be related; it's just something about how the page loads. - Xếp hạng 1 trong số 5bởi Angel, 13 ngày trướcEsta vaina debería tener un modo automático para aquellos que no saben de programación.
- Xếp hạng 5 trong số 5bởi whatever, 14 ngày trước
- Xếp hạng 5 trong số 5bởi HunterMirror, 16 ngày trướcHe notado en las demás reseñas, que las personas no parecen comprender el propósito de este addon. La idea es que bloquee los scripts, si una página se rompe por ello, es algo perfectamente esperable, no es culpa de la extensión perse, sino de quien desarrolló dicha página web, queda a tu criterio si lo quieres añadir a la lista blanca o no. Lo realmente triste y reprochable, es más bien que hoy en día hayan tantas páginas que quieran que actives los scripts si o si para poder usarlos, incluso páginas que no los necesitan para nada.
El abuso de los scripts y la manía de convertir las páginas web en "aplicaciones", es lo que ha causado que ahora usar el navegador implique un consumo cada vez mayor de RAM, sin contar los riesgos de seguridad innecesarios del uso de scripts, tanto para el usuario como para el webmaster/desarrollador. Así que por mi parte, prefiero que se rompan las páginas que sean, no les voy a activar los scripts si no son páginas que hagan un uso inteligente y justo de ellas. - Xếp hạng 5 trong số 5bởi k4mmi, 17 ngày trước
- Xếp hạng 5 trong số 5bởi Người dùng Firefox 19265671, 17 ngày trướcIt give me the power to control every script on every sites.
- Xếp hạng 5 trong số 5bởi Người dùng Firefox 18710229, 24 ngày trướcThis add-on works as intended and has saved me from a lot of potential problems and annoying website antics.
- Xếp hạng 3 trong số 5bởi Air, một tháng trướcVery useful on a computer, however, enabling it by default on a mobile phone will block many important features, including but not limited to any AI features and video browsing
- Xếp hạng 2 trong số 5bởi Người dùng Firefox 19157064, một tháng trướcCompletely breaks reddit on mobile, site becomes unusable. I only got it for help blocking reddits creepy tracking bs on this browser.
- Xếp hạng 1 trong số 5bởi Cory Sanin, một tháng trướcOne star for SidebarUtil.tab.js
Disruptive as hell and for what? Why do you need to know if I have a sidebar open? I don't even know what a sidebar is. Remove this nonsense. - Xếp hạng 5 trong số 5bởi Người dùng Firefox 19145735, một tháng trước
- Xếp hạng 5 trong số 5bởi And?, 2 tháng trước
- Xếp hạng 5 trong số 5bởi A Tea Daze, 2 tháng trước
- Xếp hạng 5 trong số 5bởi srzlt, 2 tháng trước
- Xếp hạng 5 trong số 5bởi jordan9543, 2 tháng trước
- Xếp hạng 5 trong số 5bởi vit55555, 2 tháng trước
- Xếp hạng 5 trong số 5bởi Người dùng Firefox 18218075, 2 tháng trước
- Xếp hạng 5 trong số 5bởi fiendkaka, 2 tháng trước
- Xếp hạng 5 trong số 5bởi Shannon Sobeck, 2 tháng trước
- Xếp hạng 5 trong số 5bởi Flyyyyyyyyyyyyyyyy, 2 tháng trước
- Xếp hạng 5 trong số 5bởi Người dùng Firefox 19088604, 2 tháng trước