This site will have limited functionality while we undergo maintenance to improve your experience. If an article doesn't solve your issue and you want to ask a question, we have our support community waiting to help you at @FirefoxSupport on Twitter and/r/firefox on Reddit.

Search Support

Avoid support scams. We will never ask you to call or text a phone number or share personal information. Please report suspicious activity using the “Report Abuse” option.

Learn More

Are script surrogates practical ?

  • 3 replies
  • 1 has this problem
  • 1 view
  • Last reply by verve

more options

I'm just trying to figure out how to use the surrogate about config function. No Scripts is a great tool. When you have to constantly permit scripts on so many web sites though, it seems as if the purpose is defeated. This permits JavaScript to be executed with out leaving you vulnerable in the way allowing scripts does ?

I'm just trying to figure out how to use the surrogate about config function. No Scripts is a great tool. When you have to constantly permit scripts on so many web sites though, it seems as if the purpose is defeated. This permits JavaScript to be executed with out leaving you vulnerable in the way allowing scripts does ?

All Replies (3)

more options
more options

Unless I'm missing something, those addons seem to essentially provide you with a site white list and/or black list for No Scripts. It seems that the no scripts tool bar essentially gives you those options any way by clicking " allow all this page " or " untrusted". What I'm trying to figure out is: if and how scripts surrogates:

http://hackademix.net/2011/09/29/script-surrogates-quick-reference/

permit you to use a site that requires java scripts, using the surrogates so you do not open your self to the vulnerability of allowing scripts. Do the Surrogates provide some defense?

more options

When I say that you have to constantly allow scripts on sites, I'm not complaining about the act of clicking on allow each time. I just mean that you are no longer provided the protection of disallowing scripts and are surrogates a way around this ?