The author object member is a standard PDF field. It's embedded by most software which generates PDFs, not just OSX. It's not a security flaw, it's a feature of the PDF standard.
The existense of an author field is fine, and I've got no beef with it being a part of the PDF standard.
My problem is with the choice to populate that field with the OS X user's login name. This compromises the security of the computer because it gives away half of the info needed to login to your computer (the other half of course being your passsword).
A safer choice would be to pull the first and last name from Address Book's "My Card." Or better yet, allow us to change the source location via Terminal.
And just because it is "embedded by most software which generates PDFs" doesn't make a good idea.



Sign In
Register
Help


MultiQuote