canmove, Confirmed users
120
edits
| Line 38: | Line 38: | ||
== Security == | == Security == | ||
* Security reviews for [https://wiki.mozilla.org/Security/Reviews/WebActivities Web Activities] and [https://wiki.mozilla.org/Security/Reviews/F1_%28round_2%29 F1] occurred on 8/26 | |||
* Action items | |||
** [bsterne] will need to assign someone for penetration testing once implementation is more finalized | |||
** [bsterne] to schedule further threat modelling discussion with Mike, Ben, Shane | |||
** [dchan] code review | |||
** [sstamm] privacy review | |||
** [scaraveo] need to figure out if the temporary part for Twitter OAuth will end up in the product, or if we can cut it out before the first release. | |||
** [scaraveo] final decision on screenshot thumbnail sharing, this decision will need to be communicated back to secteam | |||
** [scaraveo] bug to track fixing the of OAuth flow/dialog/injector | |||
** [scaraveo] talk to jst about popup blocker code | |||
== User research == | == User research == | ||