Pausing Manifest V2 phase-out changes
groups.google.com
groups.google.com
I suppose Google gets a tiny bit of credit for not jamming MV3 through and leaving developers with the bill, but given the state of things, who has any confidence in what the future of browser extensions holds?
Of the 1200 checked so far:
Manifest v2: 872
Manifest v3: 328
They'd basically be breaking almost 2/3 of extensions.
EDIT: Just noticed 9 out of 12 of Google's own extensions are still on manifest v2 as well: https://chrome.google.com/webstore/category/collection/by_ch...
Also, this site [1] has been tracking Manifest V3 migration, but I think they might be incorrectly including Apps and Themes in their counts (I believe the 180K figure represents all of the items on the store [2]) which might be throwing off the numbers a bit.
[1]: https://chrome-stats.com/manifest-v3-migration
[2]: https://www.debugbear.com/blog/counting-chrome-extensions
“Unmitigated shitshow” is the only thing that comes to mind today.
What tech giveth, tech taketh away.
Google = unreliable as business partners and more shitty every day anyway.
Honestly, I would say it's more "what tech giveth, greed taketh away."
> Chrome team members manually evaluate each extension before it receives the badge, paying special attention to the following:
> 1. Adherence to Chrome Web Store’s best practices
I guess it’s “evaluated” on adherence, rather than it being a hard requirement
The deprecation timeline is too aggressive considering that Manifest V3 is still missing important features, so many developers have decided to brace for impact, even if it meant losing the Featured badge for their extensions in January 2023.
I’ve seen Google deprecate a dozen products I’ve used. They all follow the same pattern:
1) Deprecation announced with shut down date
2) 1-2 months before the day, they’ll send an email saying the shut down is delayed by 3-12 months
3) Repeat steps 1-2 until enough people have migrated away
The same thing will happen with Google Analytics, scheduled to be disabled July 2023. There’s no way Google will turn off millions of Analytics (GA3) accounts in 6 months when their replacement product (GA4) is so inferior.
Hacks, workarounds, bad docs, and lately, Google pops up to tell us OSD is kinda sorta a thing you can use, but clearly it's at a basically alpha level of maturity. This latest announcement might seem like a reprieve, but it's even worse than before for us, because now it's clear that OSD is a temporary measure, and now we have promises to fix the actual issues in the future.
As a manager I have no idea how to proceed. Do we solider ahead with OSD like we planned? Wait for them to fix the core issues? We have so little trust in Google fixing things, and a great deal of confidence in them making things worse at this point. If we commit to OSD we might be looking at doing the same level of work again, when they fix the core issues and deprecate it. If we wait for core fixes, we might not get the work done before a nebulous future deadline that could drop on us at any moment.
Google has caused us to burn an absolutely incredible amount of time and money with this. Believe me, we're are footing the bill, and have been for some time now.
They will try again in a year, and there will be less opposition (because people get tired of fighting etc.), and this will happen
Google isn’t the CIA or NSA. They don’t have that kind of staying power because they don’t have any guiding principle beyond profit (for better or for worse).
Google dominates search, browsers, and mobile operating systems. CIA and NSA inly wished they had this (well, thanks to CLOUD Act they do, through Google and others).
People not taking Google seriously is precisely why all this shit like Manifest V3 is happening.
As for search: Google has been watering down search for years trying to make it "understand" human speech. This has been a failure and not ChatGPT exists that can actually (apparently) understand english and replies in English too. It's an excellent first pass to get me the information I'm after. The responses from ChatGPT leapfrog me over the first 4-5 rounds of Google searches and right to the point where simple 1-2 word searches on google/bing can get me across the finish line.
Most of the examples and documentation said something like "this has been copied from the MV2 documents or example. It might not work." It was awful.
I felt MV3 is really about limiting what the extensions can do.
I ended up having it Firefox only and MV2. Probably works in Chrome too, but I wasn't going to waste time on it since it was about to be removed.
You felt that way because that's exactly what it's about. It's about doing everything possible to increase ad revenue in the name of "increased security".
I spent a few days on a pet project using the Google Sheets API and the official docs use a mix of 3 different versions of libraries, none of which are really up to date, and you have to guess which is the right one.
They don't care about developers.
You'd have thought that a company the size of Google would have their public documentation problem totally solved by now.
Ideally, those docs should just be in one place so writing Chrome/Safari/Firefox extensions should just work.
This is literally my only complaint about MDN, and it’s only a complaint when I’m in a hurry. The sprawling body of standards MDN documents are almost all fairly low level and intended as such, and MDN mostly does a good job of balancing the low level details with good boilerplate examples. I can’t say how this is for extensions on any version, but if the MDN docs continue apace I’d be surprised if they don’t at least adequately answer this “should” as shortly behind a stable spec as anyone could wish for.
I wish XML-related tech was such a hot documentation commodity… guess I better contribute as I go :)
From a extension creator perspective, it might be better to just pull all mention of MV3 on the MV2 pages until it's properly baked.
https://blog.mozilla.org/addons/2022/10/31/begin-your-mv3-mi...
I guess they are following Chrome migration plan by delaying the inevitable
I still struggle to believe it, but everytime I read something on this "V3 migration" that sounds like exactly what they plan..
This isnt like IE6 either, where every user was desperate for the apps they were forced to use to die, it seems the only people that really want this change is google.
Apologies in advance if Im wrong, the only reason I care is I keep hearing "google plans to break lots of stuff with no clear need to do so."
Force them all to live as Winston Smith in rooms with wall sized screens that deliver unblockable ads and monitor their every action?
ie. To eat their own dogfood.
Thus the shitshow.
The true leverage comes from increasing the relevance of Firefox and Brave, eroding their market power as much as possible. Users should have ad blockers and the ads team should be able to do exactly nothing about it.
Also for power users it should not be a problem at all. Just create your own extension which is literally few simple files and put your userscripts inside that extension. Then load this extension from the chrome and voila.
If you read the MV3 migration guide you’ll quickly realize why. CSP script-src is restricted to self, none, or localhost sources for all non-sandbox pages, content scripts included.
https://developer.chrome.com/docs/extensions/mv3/mv3-migrati...
Time to package a JavaScript interpreter into wasm and run it within the extension.
It's very inefficient and it's a pain to write, but it is possible.
I suspect they will not approve extensions that do this if it becomes popular.
Of course, we're not just on Chrome — we're also on Firefox. But our migrated extension doesn't work on Firefox, since they haven't fully figured out their transition plan. We're left with a gigantic mess that will be confusing to users (because our Chrome MV3 has significant changes to our freemium model, which made sense to implement during the manifest changeover). We'll have to explain to our FF users that they still have the old version, but the new version is only on Chrome. But for our other extension, everyone's on the old version. What a mess.
Simply posting questions usually got meaningful feedback, and while the team certainly wasn't "taking advice" from the community at large, the manifest v2 space felt cohesive and generally well thought out.
Things worked. Documentation was decent. Compatibility problems between Firefox/Chrome were small and documented. It was still possible to load extensions outside the stores. Extensions could do genuinely powerful things.
Manifest v3... has been a complete fucking disgrace (and I say that as someone who was really, really trying to give Google the benefit of the doubt here early on, and someone who has personally ported my organization's extensions to MV3).
It's poorly documented (all sorts of things in the docs are half-assed, scattered links to mv2 only pages, dead/broken links in the pages, docs that contradict other docs, completely undocumented features and capabilities, bad examples, examples that no longer build, etc).
Basic features are literally not functional. We STILL to this day have repeated complaints from customers about the extension "dying" or "it stopped working" which I can fucking promise is this issue: https://bugs.chromium.org/p/chromium/issues/detail?id=127115...
Which has been closed and opened several times (currently closed and is absolutely still happening). I still see this at least once a week in development. The service worker simply fucks off and stops doing anything at all (sitting there with "inactive" despite sending messages to it, or clicking the browser action).
Permissions are still a freaking disgrace - trying to play nice with the permissions APIs gets your extension relegated way down the list. Extensions which just request "all_urls" get put right at the top of the extensions list when a user clicks the extensions menu, while those that properly ask for the active_tab permission get shoved way down and have a "access requested" tag in bold that actually seems scarier to users than the extensions that just fucking declare all_urls.
Optional permissions, meanwhile, don't actually go away when you release them in chrome (why even have the fucking function call?) so you can't meaningfully display permissions status to users without tracking state yourself. And you sure as hell can't count on the state of a permission to indicate user preference on whether a feature should be active. Again - have to do all the tracking manually.
Basically - The chromium team is fucking up HARD here, in my opinion. It's really starting to feel like the decent developers are gone (and I know a lot of them are) and the result is now the same as IE used to be - the browser is just a political tool to control competition. There's little cohesion, features & flows are broken at random and with no documentation. Issues are triaged superficially and then closed instead of resolved. Developers are ridiculed by the team for posting questions (jesus some of the responses around questions for declarativeNetRequest are fucking bad - especially given the shoddy state of the docs), or simply ignored.
I'm pretty torn - I actually think the Edge port of chromium is better than chromium at this point - and if you'd told me 10 years ago that I would end up saying MS has a better browser, I would have laughed in your face.
Meanwhile FF is just limping along, and Safari is absolutely neglected because apple makes all their money in the app store, so it's in their interests to have a shoddy browser from a feature perspective (they still do good work on performance and battery usage, at least).
---
Long rant aside - I'm very disappointed in MV3. I tried hard to play along, and it's shite.
This is a strange take as far as extensions are concerned, because last year iOS Safari introduced extension support, something that Android Chrome still doesn't have. And Apple does sell Safari extensions in the App Store, so extension development is in their interests.
Chrome first released them in 2009, version 4 (happened to still be on webkit then, too - so same rendering engine as safari). The space is 13 years old.
And even then... the supported api set is fairly minimal.
Combo that with the xcode lock in and... Apple still gets a solid failing grade from me.
This is totally false. Safari Mac has had extension support since 2010.
Safari has gone through a few different extension formats: safariextz, app extensions, web extensions. But Chrome and Firefox have also gone through a few different extension formats.
With the old API (webRequest), Chrome calls an extension's event handlers before every network request, and uses the result of the handler to decide whether to filter the request. This requires Chrome itself to block
With the new API (declarativeNetRequest), an extension sends a list of rules (i.e. URL patterns) to Chrome, and each rule specifies a static instruction that says how requests matching that pattern should be handled (for instance, being blocked, upgraded from HTTP to HTTPS, or redirected). So Chrome can use its own optimized lookup procedure and doesn't have to block waiting for extension code to complete, which might take arbitrarily long.
The privacy advantage is that the extension can tell Chrome how to handle network requests (in a much more limited way than before) but can't actually gain any information about what requests the user is making. But that's only part of the justification. The Chrome developers have stated in the past that they believe slow extensions using the old webRequest API are causing general browser performance problems (by doing lots of blocking computation on every request) and making it seem like it was Chrome's fault.
Note that these regulations were established for MV2, and MV3 doesn't do anything new to address this. So there's still no benefit to MV3 on this topic. As far as I can tell, and I work with these APIs for a living, the privacy claims of MV3 are bogus.
Says all you need to know. They are going to shove this down people's throats, whether they like it or not. Maybe not now, but it's coming. It's kind of disgusting how they talk about this change so matter of fact, as if Chrome is the only choice that people have.
No they didn't, why do you lie like that?
And which ones are that? Time to first byte, first content paint, render blocking resources?
For an example, see any discussion on Chrome-only non-standards like hardware APIs where people are convinced they are standards and all other browsers are holding the web back.
Their entire web.dev site is nothing but Chrome propaganda machine that frequently posts about Chrome-only tech or APIs without mentioning they are Chrome-only and possibly never have the chance of becoming cross-browser (web transport comes to mind as a recent example: shipped in Chrome, its status is literally "some ideas scribbled on a napkin")
They announced mv2 will phase out.
Their initial plan for mv3 was to cripple remote code execution and network requests intercept api for their own good.
They didn't anticipate this much backlash from the community.
Now they've to reintroduce those capabilities making it same to mv2 :|
Circus.
Feel the power of the Manifest v3 - https://news.ycombinator.com/item?id=33063619 - Oct 2022 (274 comments)
Google postpones MV2 shutoff in Chrome stable to June 2023 - https://news.ycombinator.com/item?id=33012057 - Sept 2022 (283 comments)
Manifest V3: The Ghostery Perspective (2021) - https://news.ycombinator.com/item?id=32983565 - Sept 2022 (5 comments)
Manifest V3, webRequest, and ad blockers - https://news.ycombinator.com/item?id=32950199 - Sept 2022 (153 comments)
uBlock Origin Lite: Description - https://news.ycombinator.com/item?id=32911640 - Sept 2022 (148 comments)
Proxy Chrome extensions are not going to be usable in MV3 - https://news.ycombinator.com/item?id=32899846 - Sept 2022 (204 comments)
Ad blockers struggle under Chrome's new rules - https://news.ycombinator.com/item?id=32764304 - Sept 2022 (3 comments)
“UBO Minus (MV3)” – An Experimental uBlock Origin Build for Manifest V3 - https://news.ycombinator.com/item?id=32754274 - Sept 2022 (255 comments)
AdGuard publishes the first ad blocker built on Manifest V3 - https://news.ycombinator.com/item?id=32648131 - Aug 2022 (360 comments)
Cannot read clipboard from service worker in a MV3 chrome extension (2020) - https://news.ycombinator.com/item?id=32622739 - Aug 2022 (51 comments)
Tor Project – 'We are concerned about Google's plan to retire Manifest v2' - https://news.ycombinator.com/item?id=32608847 - Aug 2022 (4 comments)
Chrome extension Manifest V3 migration tracker - https://news.ycombinator.com/item?id=31494944 - May 2022 (6 comments)
Manifest v3 in Firefox: Recap and Next Steps - https://news.ycombinator.com/item?id=31425256 - May 2022 (168 comments)
Ask HN: Will you keep using Chrome when manifest-v2 is sunset? - https://news.ycombinator.com/item?id=30589773 - March 2022 (5 comments)
Google’s Manifest V3 still hurts privacy, security, and innovation - https://news.ycombinator.com/item?id=29555673 - Dec 2021 (2 comments)
Google Nukes Ad-Blockers–Manifest V3 Is Coming - https://news.ycombinator.com/item?id=29522952 - Dec 2021 (6 comments)
PSA: uBlock/AdBlocks on Chrome to lose function thanks to Manifestv3 - https://news.ycombinator.com/item?id=29521258 - Dec 2021 (315 comments)
Chrome users beware: Manifest v3 is deceitful and threatening - https://news.ycombinator.com/item?id=29502439 - Dec 2021 (375 comments)
Chrome phasing out Manifest v2 support from Jan 2022 - https://news.ycombinator.com/item?id=29410104 - Dec 2021 (33 comments)
Google sets burial date for legacy Chrome Extensions, fears for ad-blockers grow - https://news.ycombinator.com/item?id=28680033 - Sept 2021 (386 comments)
Manifest V2 Support Timeline - https://news.ycombinator.com/item?id=28645250 - Sept 2021 (2 comments)
Manifest v3 Update - https://news.ycombinator.com/item?id=27305127 - May 2021 (93 comments)
Microsoft Will Adopt Google Chrome's Controversial Manifest V3 in Edge - https://news.ycombinator.com/item?id=25445823 - Dec 2020 (4 comments)
Manifest V3 now available on M88 Beta - https://news.ycombinator.com/item?id=25361535 - Dec 2020 (138 comments)
Manifest V3 changes are now available to test in Microsoft Edge - https://news.ycombinator.com/item?id=24780055 - Oct 2020 (36 comments)
Google Begins Testing Extension Manifest V3 in Chrome Canary - https://news.ycombinator.com/item?id=21503049 - Nov 2019 (436 comments)
Mozilla’s Manifest v3 FAQ - https://news.ycombinator.com/item?id=20867720 - Sept 2019 (106 comments)
Chrome extension manifest v3 proposal: comment from uBlock Origin author - https://news.ycombinator.com/item?id=20050173 - May 2019 (279 comments)
Google to restrict modern ad blocking Chrome extensions to enterprise users - https://news.ycombinator.com/item?id=20044430 - May 2019 (877 comments)
Chrome Extension Manifest V3 Could End UBlock Origin for Chrome - https://news.ycombinator.com/item?id=18976409 - Jan 2019 (4 comments)
Chrome Extension Manifest V3 (draft) may end uBlock Origin - https://news.ycombinator.com/item?id=18971656 - Jan 2019 (3 comments)
the way to signal google that they are not doing a good thing is by replacing chrome/chromium with firefox. switching from chrome to opera/brave is doing the same thing.
sure, firefox is not helping their cause because of their CEO salivating at google revenue but even then, they have committed to supporting UBO, something that goes on to say a lot more about the ethics behind firefox as opposed to chrome