Wikimedia Security Team/Security Review Planning/2023-01-04
Appearance
Minutes for the Security Team's Q3 2023 (January to March) quarterly planning session
Attending: MMartorana_(WMF), MStyles_(WMF), SBassett_(WMF), CLemoisson-WMF
Completed Reviews, Previous Quarter
- Campaign Events Threat Model / API - MStyles_(WMF) - T309410#8283772
- SearchVue - MMartorana_(WMF) - T315250#8487006
- ext:Phonos - MMartorana_(WMF) - T314296#8420301
- QuickSurveys - MStyles_(WMF) - T320992#8457720
- d3js (sub components) - SBassett_(WMF) - T318854#8496915
- OIT LDAP decommission T155537#8479008
- Gitlab Runners - Vendor review completed and evaluated - MStyles_(WMF) - T304514
Reviews That Need Follow-Up This Quarter
- Soundlogo Wordpress - Done, awaiting requester feedback - SBassett_(WMF) - T317769#8487670
- Campaigns V2 - Allotting space for this, reached out to requester for details - SBassett_(WMF) - T322871#8499433
- RESTbase decomission - threat-modeling, to discuss and plan - SBassett_(WMF) - T325073
- Wikispeech - re-evaluate/decline - SBassett_(WMF) - T180021
Updates Made For Other Review Tasks
- Abstract Wikipedia - Language Review for ZObject spec, trying to complete this quarter - SBassett_(WMF) - T302472
Accepted Reviews To Complete This Quarter
- ext:OurWorldInData - SBassett_(WMF) - T324989
- Swagger UI vendor review - MStyles_(WMF) - T325558
- ext:RealMe - MMartorana_(WMF) - T324536
- Device analytics service - MStyles_(WMF) - T324710
- swaggest/json-diff - left over from last quarter - MMartorana_(WMF) - T316523