W3C home > Mailing lists > Public > public-device-apis@w3.org > August 2012

Re: Networked Service Discovery and Messaging - first draft published

From: Robin Berjon <robin@berjon.com>
Date: Mon, 6 Aug 2012 12:48:28 +0200
Cc: "public-device-apis@w3.org" <public-device-apis@w3.org>
Message-Id: <13F39B85-77C1-4633-8207-765463D4BB84@berjon.com>
To: Rich Tibbett <richt@opera.com>
On Aug 3, 2012, at 20:00 , Rich Tibbett wrote:
> I'm not a huge fan of Individual Security and Privacy Consideration sections in specs. It's Important to tackle these things by design and include security as part of the defined algorithms. Having said that, if the group thinks this is a good idea then we can add something along those lines.

There are two aspects to take into account here. One is designing security right into the technology's model and not bolting it on in a separate section (that might not get implemented). The other is catering to readers who might not give a rat's hind about discovery in JS but who want to do a security review of the spec. Those are the people for whom a dedicate security section can be useful. I think it can be a short affair, perhaps a couple paragraphs stating that security blah can be found in sections foo.

Robin Berjon - http://berjon.com/ - @robinberjon
Received on Monday, 6 August 2012 10:48:54 UTC

This archive was generated by hypermail 2.3.1 : Monday, 23 October 2017 14:53:55 UTC