[privacy-request] Issue: Web Neural Network API 2022-06-30 > 2022-09-30 (#96) marked as REVIEW REQUESTED

anssiko has just labeled an issue for https://github.com/w3cping/privacy-request as "REVIEW REQUESTED":

== Web Neural Network API 2022-06-30 > 2022-09-30 ==
- name of spec to be reviewed: Web Neural Network API
- URL of spec: https://www.w3.org/TR/webnn/ (any dated version from 30 June 2022 or later is adequate)
- What and when is your next expected transition? CR in Q4 2022.
- What has changed since any previous review? See "Changes since previous privacy review" section below.
- Does your document have an in-line Privacy Considerations section, ideally one separate from the Security Considerations? https://www.w3.org/TR/webnn/#privacy
- Please point to the results of your own self-review: [Self-Review Questionnaire: Security and Privacy](https://github.com/webmachinelearning/webnn/blob/main/security-privacy.md) and https://github.com/webmachinelearning/webnn/issues/119 for review and discussion
- Where and how to file issues arising? https://github.com/webmachinelearning/webnn/issues
- Pointer to any explainer for the spec? https://github.com/webmachinelearning/webnn/blob/main/explainer.md

Other comments: Thanks to PING participants and other privacy experts for your contributions and participation in the Web Machine Learning Working Group on behalf of the whole WG.

### Changes since previous privacy review

The Web Neural Network API received early PING review during 2020-2021: PING reviewed our initial self-review response (#119), the WG merged the self-review (#132) and added initial Security and Privacy Considerations (#170):

- [x] issue: [2020-11-05] Initial Self-Review Questionnaire response: Security and Privacy https://github.com/webmachinelearning/webnn/issues/119
- [x] PR: [2021-02-18] Add responses to the Self-Review Questionnaire: Security and Privacy https://github.com/webmachinelearning/webnn/pull/132
- [x] PR: [2021-05-27] Add initial Security and Privacy Considerations sections https://github.com/webmachinelearning/webnn/pull/170

Based on additional privacy review conducted by Google Chrome Privacy, the WG updated the privacy considerations in #259:

- [x] PR: [2022-05-21] Add privacy considerations for cached/persisted data https://github.com/webmachinelearning/webnn/pull/259

In June 2022, the WG reviewed the changes since the previous privacy review took place identifying any privacy-impacting changes:

- [HTML diff](https://services.w3.org/htmldiff?doc1=https%3A%2F%2Fcdn.statically.io%2Fgh%2Fwebmachinelearning%2Fwebnn%2Fc7a47c0346ca0316258d290f33af3bd35b433b72%2Findex.bs&doc2=https%3A%2F%2Fwww.w3.org%2FTR%2Fwebnn%2F) for changes since 2021-05-27
- [All PRs merged](https://github.com/webmachinelearning/webnn/pulls?q=is%3Apr+merged%3A%3E%3D2021-05-27) since 2021-05-27

The WG identified the following potentially privacy-impacting issues, triaged with a "privacy-tracker" label:

- [x] issue: [2020-08-27] Fingerprinting via machine-specific artifacts https://github.com/webmachinelearning/webnn/issues/85
- [x] issue: [2021-06-03] Related WebGPU Security and Privacy Considerations https://github.com/webmachinelearning/webnn/issues/175
- [x] issue: [2021-05-13] Device selection with MLDevicePreference and MLPowerPreference https://github.com/webmachinelearning/webnn/issues/169
- [x] issue: [2018-10-26] Cosine similarity between two facial features and cross origin tracking https://github.com/webmachinelearning/webnn/issues/7

The WG addressed https://github.com/webmachinelearning/webnn/issues/85 https://github.com/webmachinelearning/webnn/issues/175 and clarified https://github.com/webmachinelearning/webnn/issues/169 in PR https://github.com/webmachinelearning/webnn/pull/271. The WG elevated https://github.com/webmachinelearning/webnn/issues/7 to ethical considerations, a separate deliverable. Furthermore, the WG decided to drop WebGL dependency that removed related fingerprinting concerns:

- [x] PR: Privacy Considerations refresh https://github.com/webmachinelearning/webnn/pull/271
- [x] PR: Drop WebGL interoperability https://github.com/webmachinelearning/webnn/pull/273

See https://github.com/w3cping/privacy-request/issues/96


-- 
Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config

Received on Thursday, 30 June 2022 15:10:58 UTC