STIGhubSTIGhub
STIGsRMF ControlsCompare

STIGhub

A free tool to search and browse the entire DISA STIG library. Saves up to 75% in security compliance research time.

Navigation

  • Browse STIGs
  • Search
  • RMF Controls
  • Compare Versions

Resources

  • About
  • Release Notes
  • VPAT
  • DISA STIG Library
STIGs updated 5 hours ago
Powered by Pylon
© 2026 Beacon Cloud Solutions, Inc. All rights reserved.
← Back to Mozilla Firefox Security Technical Implementation Guide

V-251562

CAT II (Medium)

Firefox must prevent the user from quickly deleting data.

Rule ID

SV-251562r1156569_rule

STIG

Mozilla Firefox Security Technical Implementation Guide

Version

V6R7

CCIs

CCI-000166

Discussion

There should not be an option for a user to "forget" work they have done. This is required to meet nonrepudiation controls.

Check Content

Enter "about:policies" in the browser address bar. 

If "DisableForgetButton" is not displayed under Policy Name or the Policy Value is not "true", this is a finding.

Fix Text

Windows group policy:
1. Open the group policy editor tool with "gpedit.msc".
2. Navigate to Policy Path: Computer Configuration >> Administrative Templates >> Mozilla >> Firefox.
Policy Name: Disable Forget Button
Policy State: Enabled

macOS "plist" file:
Add the following:
<key>DisableForgetButton</key>
<true/>

Linux "policies.json" file:
Add the following in the policies section:
"DisableForgetButton": true