Michael Lefevre wrote:
No, but that would also help. If those 50 users recognise the green bar is missing for Paypal, that's good. If 30 of them do their banking with Anybank, who don't get EV, and Anybank says "it's ok to use our site without the green bar", then maybe next time they are at Paypal, they will forget that it's one of the sites that should have the green bar rather than one of the sites that doesn't. Multiply that by lots of sites, and people won't remember which have the green bar and which don't, and then it's maybe only preventing 2 of those Paypal accounts getting stolen each day, and at that point I'd wonder whether it is worth doing (in general, not just for Paypal).
It's certainly true that it's more valuable for each user if more sites use it; there's a network effect. But I suspect average users only have two or three financial sites they use regularly, if that. (Paypal, eBay and their bank.) And I strongly suspect Paypal, eBay and the US banks are going to be first in line for EV.
Gerv _______________________________________________ dev-security mailing list [email protected] https://lists.mozilla.org/listinfo/dev-security
