Hello,
I love Firefox and recommend it to my clients; however, I don't recommend using the password manager because it does not seem to be automatically protected. Please correct me if I'm wrong but my understanding is that without the requirement to first create a Primary Password, a malicious actor with access to the browser could export all passwords with no need for authentication. Is there something stopping a phishing email (that is clicked on) from doing just this?
If not, then I'd love to see a Primary Password requirement in order to use Firefox's password manager.
Thanks!