Third-Party Widget Security Concerns

I don't understand much about the function of Muse widgets, but I have found a widget that I really like, but it is from a third party developer. Is it possible for the developer to make the widget inject malicious code into the site? I would like some input in the security of third-party Muse widgets. If they can inject malicious code, is there any way to verify if they are secure? Thanks!

Suggest checking the widgets' developer's web pages for information on compatibility.  My quick glance at the Festive Lights homepage suggests it hasn't been updated since the version produced for compatibility with Tiger.  I don't know how they work, but they may need updating for compatibility with Lion.

Similar Messages

  • Third  party widget's not working

    Third party widgets not working (Festive lights & Christmas countdown)could it be that they can't connect to the internet

    Suggest checking the widgets' developer's web pages for information on compatibility.  My quick glance at the Festive Lights homepage suggests it hasn't been updated since the version produced for compatibility with Tiger.  I don't know how they work, but they may need updating for compatibility with Lion.

  • Will Iweb 09 allow for third-party widgets?

    I was wondering if the new "widget" section in Iweb 09 can host third-party widgets: it would be nice if iWeb became a little bit more open-ended.

    I was wondering if the new "widget" section in Iweb 09 can host third-party widgets:
    You can build your own widgets for iweb3, how you get them into iweb is another story. see my teaser here:
    http://home.cyclosaurus.com/Welcome.html
    it would be nice if iWeb became a little bit more open-ended.
    don't hold your breath, apple is NOT an open source warehouse.

  • Adding third party widgets crashes plasma desktop

    I am tryin on kde 4.11 to add third party widgets such as py-cashew and ip monitor.  But everytime I try to add the widget I either get a segmentation fault or the screen goes black for a moment before coming back.  Does anyone have similar problems, or does anyone know how I troubleshoot this problem.  I have tried to remove the .kde4 folder and start from scratch but with no success.
    Any help would be appreciated.

    donniezazen wrote:@Thaodan Is there any fix for it?
    For now the only solution is to downgrade sip & pyqt4. kdebindings-python2 needs to be rebuilt but it doesn't build against sip 4.15:
    https://bugs.kde.org/show_bug.cgi?id=323899

  • How can I remove a third party widget

    I downloaded a noisy third party Homer widget (on leopard) and now can't remove it.
    The finder search instructions say use f12 (but for me that is the volume control), I used f4 to open widgets but can't see anything for managing or removing widgets. The finder instructions say open with + but I can't see a plus or a manage widgets command.
    Thanks.

    Open up Dashboard, then click the + in the lower left corner and add the widget called "Widgets". With this widget you can manage your widgets. If you want to get completely rid of a widget you need to delete it in the Finder. Go to /Library/Widgets or ~/Library/Widgets and delete the corresponding .wdgt file from there.

  • HomeHub2 as Modem with Third Party Router, Securit...

    okay i've configured my Homehub to be set as a Router and conencted a Belkin G Plus Mimo router as the third party router, connection and everything is fine but theres on problem...
    security, there is no scurity protecting my wireless network which means everyone can access my network which is bad.
    when i try accessing the third party router (belkin router) i'm forwarded to the BT home hub control panel page...
    any help? i need protection on my wireless!
    Kind Regards, Bert

    Hi Bert,
    What you will need to do is manually change your Network Adaptor to an address in the 192.168.2.2-255 range. Set the gateway to 192.168.2.1 and try and access your third party router again. Then enable the DHCP Server on the LAN interface of your Belkin router.
    Don't forget that you have to be connecting through your Belkin router in order to use it properly like Computer - Belkin - Homehub, not Computer - Hub - Belkin otherwise it will just ignore the additional router (Belkin).
    You will also need to add a Static Route on the Belkin and set the Destination network to 192.168.1.0/24 and set the gateway to 192.168.1.254 in order to access the internet and Homehub. This will need to be set on the WAN interface.
    I hope this helps.
    Like this post? Give it a Star . If this post answers your question, please Mark it as the Accepted Solution.

  • Third-party keyboard security question

    Hello everyone,
    Apple says that third-party keyboard developers have access to all of the data user types. Then it says "If you enable Full Access", developers are permitted to access, collect and transmit the data you type".
    So my questions are:
    1. Do developers have access to the data I type with full access enabled or no?
    2. If I'm using apple keyboard but third-party keyboard is installed do they still have access to the data I type?
    For example: When I access to my credit card I will use apple keyboard but while I'm chat in Facebook or watsApp I use third-party keyboard. Do they(Third-party keyboard devs) have access to my credit card password?

    NO.  The 3rd party keyboard is only communicating with your iPad.

  • Third-party widget not displaying properly (c/p code set to 700px width, shows up as narrow mobile width)... any suggestions?

    My client is wanting to update the Store page on his website to an integrated BandPage widget. He set the width to 700px on their site, but when I copy/pasted the code into Muse & publish, it only displays as a narrow mobile version (hidden sample link: http://www.griffinanthony.com/storewidget). We contacted BandPage to make sure everything's set correctly on their end; they've assured us it is. We can't figure out why it's not working in Muse -- should be as simple as the many other widgets we placed throughout his site?!
    Here's the code BandPage generated: <script async src="//www.bandpage.com/extensionsdk"></script><div class="bp-extension" data-bandpage-bid="453666329342337024"></div>
    ..set to a grid layout (attach'd).
    Any suggestions would be appreciated. Thx!

    FYI - I figured out a way around this by dragging out the border handles of the placed code; it automatically jumped to the width it was meant to be (attach'd). Hope this tip helps others in case they're faced with a similar dilemma.

  • Extending a third party network - security question

    I have a problem with an extended network. The set up is as follows:
    BT Business Broadband - 2Wire router/ADSL modem, providing SSID (lets call it networkA) - this has been working fine for 2 years without change
    I added an Airport Express connected to said 2Wire router by Ethernet in Bridge mode
    Followed the prompts in Airport utility and it also reports itself as SSID networkA, has taken an IP address from the 2Wire and I can connect to the internet on my iPad, iPhone and Mac. the AE has been set with the same WPA key as the 2Wire. Hence they are broadcasting the same SSID and expecting the same WPA key. I believe I should be able to move around the house and stay connected on whichever is providing the stronger signal.
    Problem arises when I move to an area where the iPad wants to connect to the 2Wire due to proximity. It now asks me for the WPA key again to authenticate on the 2Wire, but refuses to accept it. I enter it (correctly) but it keeps reporting "Unable to join network".
    I trust that all makes sense - any ideas anyone?

    Accidentally I've activated MacBook Air (13-INCH, MID 2011), Mac OS X (10.7.4). My question is about iPhone

  • Is the FanControlDaemon folder in /library Apple or third party?

    I was getting constant errors
    kernel[0]: SMC::smcReadKeyAction ERROR TC0D kSMCBadArgumentError(0x89) fKeyHashTable=0x0xffffff802a9a0000
    on my MBP 2011 in Console and my fan was blowing like crazy all the time until I uninstalled all third-party fan software and the f older in the title. Now, I don't know if the folder in the library should be there or not (the assignment 'daemon' is not used much in Mac I don't think) so it's sitting on my desktop for now. But the fan has stopped screaming and I have no more SMC errors on Console.
    I do have a question though. I have free third party widgets (Temperature Monitor) that monitor some temperatures but I don't know how accurate they are. I am a bit confused though. Right now the only visible applications running are Finder, Safari, and Console (well, throw Dashboard in there too) and it's quiet as a mouse. The temperature readings I'm getting are as follows:
    Left Palm Rest 25
    Main Heatsink2 38
    CPU A Proximity 46
    CPU A Temperature Diode 48
    When I have a bunch of applications going that really tax the CPU the last figure can go into the 80's, fan full blast, but always goes back into the 70's or 60's quickly. When everything is at rest it's as above. No other problems except application specific ones like Mail.app.
    I don't understand the difference between the Heatsink and CPU A Proximity and CPU A Temperature Diode. Which one should be concerned more about?
    And, again, can I delete the FanControlDaemon folder or should I put it back?
    Thanks a lot.

    All of the temperatures that you report are normal for the types of usage involved.  I am always concerned about the temperature that has the highest value, which usually is the CPU.  I ignore the rest.
    In regards to 'FanControlDaemon' go to the developers website and get the appropriate uninstall instructions. Sometimes one has to reinstall an application and then follow the uninstall instructions in order to rid the MBP of all its elements.
    Ciao.

  • Dashboard: 3rd party widgets won't load

    odd problem I can't figure out. for some reason, Dashboard stopped loading third party widgets. they will appear in the widget bar and in the widget manager, but double-clicking on them simply closes the dashboard view without loading the widget. details:
    *only affects one user account
    *normal Apple widgets load correctly
    *no error messages generated in console
    *deleting dashboard and dashboardclient plists has no effect
    *downloading fresh copies of the widgets has no effect
    *seemed to begin around the 10.5.8 update (though I had some other issues at that time, relating to the fact that I needed to reset the PMU)
    does anyone have any ideas, because I can't seem to get a purchase on this issue.

    I've fixed the problem for myself.
    I've found the problem was around Parental Controls and Dashboard preventing third party widgets settings.
    Although Parental Controls was turned off on my account, it appears Dashboard was still picking up the parental controls setting for Widgets.
    I tried to force the removal of the settings which are held in
    /Library/Application Support/Apple/ParentalControls/Users
    The Users folder is accessible only to 'root' so I've su'd as root and removed all the settings found for my account. Logging out and in again though did not fix it.
    I then went back into System Preferences->Parental Controls and used the menu option at the bottom of the users list and selected 'Turn Off Parental Controls for <user name>'. This seems to have forced the settings and now I can add third party widgets again.
    Hope this helps.

  • Third-party cookies: Should I be concerned that I am forced to accept in order to access a site, if I delete them after every Firefox session?

    Friday 16 August, 2012
    My internet service provider (https://my.gci.net/) blocks my entry to eMailGuard (a GCI spam and virus isolator) when I have third-party cookies disabled
    When I allow third-party cookies I am able to access eMailGuard. I have used GCI eMailGuard and Firefox together for years and have had no such difficulty in the past.
    This problem commenced 2-3 weeks ago.
    I have followed all directions at http://support.mozilla.org/en-US/kb/websites-say-cookies-are-blocked-unblock-them to clear all cookies and cache, with no change. Also, my default setting (see below) is to “Clear history when Firefox closes.” If I understand correctly, clearing history will also clear cookies and cache, so I do it every time I close Firefox.
    Has Firefox changed third-party cookies parameters recently? GCI of course claims this is a browser issue. Should I be concerned about third-party cookies if I delete them after every Firefox session? Any comments or thoughts are greatly appreciated.
    My current version is Firefox v.14.0.1
    My Privacy settings are:
    • Tools\Options\Privacy
    • Use custom settings for history
    My selected (checked) custom settings are as follows:
    • Remember my browsing history
    • Remember download history
    • Remember search and form history
    • Accept cookies from sites (third-party cookies not selected)
    • Keep until: I close Firefox
    • Clear history when Firefox closes
    Thanks,
    James Lavery
    Anchorage, Alaska
    ISP my.GCI.net

    ''Keep until: I close Firefox''
    That's what I use for all cookies. If you start a new session every time you start Firefox, i.e., you don't resume the same session over and over, websites cannot track you 'across sessions' using cookies; you are a new person to them during each session (unless/until you log in).
    Note that "Flash cookies" need to be managed separately.
    As for this particular site, if you want to spend some time research it, you could install an add-on such as Firebug or the external Fiddler2 proxy. Both will show you each request made by the browser when you load a page. Then you can see which third party sites are involved and if you like make a specific entry to allow them in the Exceptions dialog.
    * https://addons.mozilla.org/en-US/firefox/addon/firebug/
    * http://www.fiddler2.com/fiddler2/ (more difficult to use for HTTPS sessions)

  • All websites including Firefox have security warning "the information you entered is to be sent over an unencrypted connection and could be seen by a third party" Firefox is not safe date started July 1, 2010 even when I remmove the security warnings the

    security warning "the information you have entered is to be sent over an unencrypted connection and could be seen by a third party" this warning appears on ALL websites, including all Firefox sites, happened after a MSupdate on July 1, 2010. I wont use Firefox is is not safe - hwat happened?
    == This happened ==
    Every time Firefox opened
    == july 1, 2010

    Ignore that warning. Report it to the Website Developers of the websites on which you are seeing this message. Ask them to deploy Secure HTTP Connection. And use secure Websites (https) addresses.
    Site Identity Button
    * https://support.mozilla.com/en-US/kb/Site%20Identity%20Button

  • Security settings change when rendered from third party Windows 2008 R2 server

    We created a fillable PDF form in Adobe Acrobat and made it Reader extended. Opening the form on a local hard drive the security settings show that Signing: is Allowed. We can sign documents in the form with a signature pad.
    After we upload it to a third party Windows server 2008 R2, and we later go to access the form, the server renders it back to us in Adobe Reader. We are unable to digitally sign documents in the form with a Topaz signature pad. We notice that although the form was originally created with the form being Reader extended the security settings change to Signing: Not Allowed.
    How can we get the server to render the document back to us where we can digitally sign documents in the form?

    The second file still shows the extended rights header is present (it's warning you about restrictions at the top of the dialog while also reporting the method is "no security") but the digital signature which grants those extended rights will be invalidated if *anything* in the file structure is changed. I suspect in this case that the server software is doing something to your file; it may be trivial such as adding an XMP tag, but it's enough to break the hash check.

  • SSL - Installing Third party secure certificates

    Hi,
    I am having problem while importing third party secured certificates (Verisign).
    In STRUST, after import It was still saying Self-Signed message for third party certificates. I am not sure weather this is correct behavior or not.
    After launch browser, the certificate status showing with message
    "This CA Root certificate is not trusted because it is not in the Trusted Root Certification Authorities store."
    Please help me to solve this issue. Any other procedure we need to follow to import third party certificates
    Thanks in advance
    Regards
    Srinivas

    I'm guessing, you'll need to download the Verisign Trusted Root CA certificate from verisign.com and import it into your certificate list in STRUSTSSO2. Under the System PSE node.
    If you doubeclick the response certificate from Verisign, you may be able to see what is heirarchy / trust chain for verisign certs. If it's more than just root, cert, you'll probably need to add the intermediate certs too. Check out verisign link, maybe it'll explain better.
    https://www.verisign.com/support/ssl-certificates-support/page_dev028341.html
    Also is the self signed message on teh SSL Server PSE node, or the server node? it shouldn't say self-signed if it's the (as example below) sapserver_sid_00 node.
    SSL Server
       |_  sapserver_sid_00
    Hope that helps.
    regards,
    Laurence...
    disclaimer:
    The content of this message is my personal opinion only and, the statements I make here in no way represent my employer's position on the issue, nor am I authorized to speak on behalf of my employer on this matter.

Maybe you are looking for

  • SSL/TLS security certificate data match with XML Payload in SAP PI

    Hi, We are working on a solution where we would want to use SSL/TLS or WS Security with client server mutual authentication using client server certificates. But, once the sender is authenticated using the certificates, can the XML payload be matched

  • Multiple pages in Smart forms

    Hi all, Actually I want to print multiple pages in Smartforms . I have a option to take New Page and set that Page as Next page . but In my case Pages are dynamic. if any person has solution please send me.... thanks

  • Do anyone know how to get itunes to recognize my ipod for a mac?

    ii really ned this to work ASAP........

  • ORACLE RAC - Clusterware 11Gr1  -

    Hi, We are starting a fresh installation of an Oracle RAC database on: IBM AIX 5.3 Processor Type: PowerPC_POWER7 Processor Implementation Mode: POWER 6 Processor Version: PV_6_Compat Number Of Processors: 2 Processor Clock Speed: 3108 MHz CPU Type:

  • Music in dialog?

    //I have a dialog   code shown below// project .I want to  play music  say //deniz .wmv when dialog //opened and stop music when dialog closed  . how can I achieve this. if  you //show me  the additional codes  I will be very pleased. //best wishes /