-
Notifications
You must be signed in to change notification settings - Fork 26
Secure your Lockbox: FxA as master password and to allow sync #209
Comments
Per emails with FxA:
|
@sandysage to help drop in designed/desired flow here may need separate tasks here real quick.. |
@sandysage @changecourse Is there a design for this? I'm working on recommendations and it would be helpful to understand how the current master password creation will change. My understanding is that creating a master password will be replaced by the FxA creation flow, is that right? |
@hmcgaw just to close the loop, I know you have this, but the planned design is in the Invision doc: https://mozilla.invisionapp.com/share/54E2A6ZKF#/259383381_0-0_Add_Lockbox |
@linuxwolf @sashei do you two have corresponding sub-tasks or issues opened for the extension (datastore?) and iOS app to track the exploration and OAuth work yet so we can add it to the epic list above? |
|
@changecourse I think the workflow articulated here is as defined as we're expecting for now, right? If so, let's remove the "needs-ux" label, knowing that other tasks may need your involvement. |
@sandysage I think that's true... Removing the label... |
As a Firefox Account user, I find the password manager is optimized for me such that I can set it up in 5 clicks or less, and retrieve and fill my credentials in 3 clicks or less.
Acceptance Criteria
Expected behavior
*NOTE: Based on current limitations, need to determine if it's better to land the user on the fullscreen editor upon sign in versus having to click the toolbar icon twice (once to prompt the FxA sign in pop-up, and second to prompt the list view)
Visual Design
https://mozilla.invisionapp.com/share/54E2A6ZKF#/screens/
Context
The concept of a master password as one password that would give access to many more passwords is generally understood by users. But it's unclear if that's just as understood when a user needs to have an account to sync their data to different devices. Do users accept creating and managing both an account (with a password) AND a master password?
The hypothesis here is that users want less to manage and understand that their data is secured by their Firefox account access. And that this proposed flow matches already existing workflows around using a federated identity to access other accounts (ie can log into an account using Google or Facebook sign-in).
Extension (Alpha) Tasks
Sync
Mobile
Future?
The text was updated successfully, but these errors were encountered: