[Project_owners] Is this a remote web-bug in a Thunderbird extension hosted on mozdev?

eric.jung at yahoo.com eric.jung at yahoo.com
Tue Jan 16 07:12:40 PST 2007

Before you jump to conclusions, it might be useful to ask the author his intentions. After recent complaints about the download size of FoxyProxy, I considered hosting some of ites images remotely but decided against it in the interest of privacy. Perhaps this author had similar thoughts. Also, has this code been packaged into a release or just uploaded to CVS? If the latter, these may not be the author's permanent plans.

+  var col = document.createElement("treecol");
+  col.setAttribute("id","myCol");
+  col.setAttribute("editable","true");
+  col.setAttribute("label","Face");
+  col.setAttribute("src",

This wasn't there in the previous version; and it isn't in the code of
the extension this was based on (messagefaces).

There does not seem to be any good reason to load remote content here. I
mean the other extension, messagefaces, does optionally allow you to use
remote content for your *faces* but it's a pref that is off by default;
and it certainly doesn't load remote content for its UI.  What does the
mozdev T&C say about this sort of behaviour?

Having said that, I can't imagine why on earth a Swedish bank would want
to track Thunderbird users.  Am I just being unnecessarily paranoid, or
are the Gnomes of Zurich  really out to get me?

