https://bugzilla.novell.com/show_bug.cgi?id=811729 https://bugzilla.novell.com/show_bug.cgi?id=811729#c4 --- Comment #4 from Marguerite Su <i@marguerite.su> 2013-03-26 18:15:36 UTC --- Hi, 1. People have it installed by default have already known that it will send data to Internet servers from day one. Actually it's their request that push you develop it. That's why there's no bug reports and critiques from them. It's common knowledge among them. Since it satisifies people and there's no legal affair in it, It's acceptable from openSUSE side. To those who install it manually, it's your responsiblity to warn them(although I can't see any advantage of doing this). not our side. 2. Even not all websites are in HTTPS. I can't see the advantage to use Google by default. It's not technically possible to sniffer all the people. So how can the cracker pick you as a pity example ? Even if the cracker picks you as his target: * He can't hack your system. there's no system weakness at all. * He can't get what you're trying to say. because: ** He can only get the raw string and the return word, he has a lot of probability to guess, and even if he's right, he can't even know if the "right" word is the one you want. ** He can only get some strings in the sentence. Not all strings are sent to the servers. it's based on length. Basically it means it's not technically possible to get your mind. I can't see any possibility to take so much efforts to do such an useless thing. He can just sniffer your page visiting activites and easily get the correct word you type. So in my point of view, It's a non-existent bug. -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.