SecurityEngineering/MeetingNotes/09-05-12

From MozillaWiki
Jump to: navigation, search

Standing Agenda

  • Q3 Goals Recap -
    • Implement security model for basecamp
    • Achieve go / no-go for Firefox sandboxing
    • Land "final" Click to Play experience (address correctness and UX)
    • Ship CSP compliant with W3C 1.0 spec (also helps B2G)
    • Lead security/privacy dev community event or workshop
  • Review currently active (P1) features against their established milestones, identify any blockers - Security/Roadmap + Privacy/Roadmap
  • Review roadmap priorities to ensure they accurately reflect active projects and Mozilla's priorities
  • Suggest additions or changes to roadmaps
  • Detailed discussion of features or outstanding issues as time permits
  • Additional Items
  • Upcoming events, OOO/travel, etc.

Last week: https://wiki.mozilla.org/SecurityEngineering/MeetingNotes/08-30-12

Goals

  • [ON TRACK] Security Model for basecamp
  • [ON TRACK] Sandboxing - we have a plan (Windows 8 metro) and buy-in for this plan from Asa
  • [ON TRACK] C2P user experience is on track
  • [AT RISK] CSP 1.0 compliance -- lots left to do, still hacking away
  • [DROPPED] community event or workshop

Roadmap

  • no significant updates, work continues !

Additional Items

  • Geolocation UI Telemetry
    • dev asked that we discuss this
    • https://bugzilla.mozilla.org/show_bug.cgi?id=787738
    • he has a patch but needs input on a few things - please take a look
    • he really wants to land this asap since the patch is gquite small/simple
    • We want to know how often people accept/reject the prompt
    • dveditz suggests if this is finished soon we should try to uplift to Aurora 17 to get this in with the other security UI telemetry