Security/Reviews/Secure Development Lifecycle: Difference between revisions

Line 53: Line 53:
* '''Audience:''' Developers
* '''Audience:''' Developers
* '''Process to Engage:'''  
* '''Process to Engage:'''  
** For security or privacy questions on bugs, design questions, patches etc - SImply add the keyword "Sec-review-needed" to any bug. We triage these each week and will jump in to assist
** For security or privacy questions on bugs, design questions, patches etc - Simply add the keyword "Sec-review-needed" to any bug. We triage these each week and will jump in to assist
** For general questions or immediate needs - Email security@mozilla.org and we'll get back to you right away with assistance
** For general questions or immediate needs - Email security@mozilla.org and we'll get back to you right away with assistance
* '''Inputs:'''  
* '''Inputs:'''  
** Any security or privacy question that is on your mind. Really anything, we're here to help
** Any security or privacy question that is on your mind. Really anything, we're here to help
** Development guidelines - check out the following guidelines to find additional information
* Development guidelines - check out the following guidelines to find additional information
** Secure Web Development Guide - concise guidance to avoid common web application security issues
** [https://wiki.mozilla.org/WebAppSec/Secure_Coding_Guidelines Secure Web Development Guide] - concise guidance to avoid common web application security issues
** Privacy Principles - guiding rules for handling user data in a privacy preserving way
** [https://wiki.mozilla.org/Privacy#Mozilla.27s_Privacy_Principles Privacy Principles] - guiding rules for handling user data in a privacy preserving way
* '''Outputs:''' A quick answer to address the issue
* '''Outputs:''' A quick answer to address the issue


Confirmed users
491

edits