On Sep 10, 2013, at 6:43 PM, Dave Camp wrote: > On Tue, Sep 10, 2013 at 9:39 AM, Paul Rouget <p...@mozilla.com> wrote: > > So your proposal would prevent people to steal password only if: > the phone doesn't have a code, the phone is not rooted, the > phone doesn't have an accessible sdcard, passwords are not recoverable > via email. > > > And in that case they could just grab the data with adb, right? > > -dave
No, production phones do not have root access, so you can't access /data (including the profile, ie cookies indexeddb etc) _______________________________________________ dev-b2g mailing list dev-b2g@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-b2g