Re: [securityig] CfC: Adopt W3C Security Disclosures Best Practices as a Work Item (#13)

Hi @jyasskin, thank you for your comments

> I'd like to see the group start to succeed on its initial and [chartered deliverables](https://www.w3.org/2024/11/security-ig-charter.html#deliverables) before adding more work. There's not yet a draft for either threat model deliverable, right? 

For the TMG, we're working with @jandrieu, on a Google Docs so that it can then be published on GH.

For the TMW, we discussred with @SamuelSchlesinger on the fact that it might be useful to have a volunteer from the browser developer side on this. 

> The AI threat model also isn't even moved into a repository associated with this group yet, and there has been no progress on fixing its incorrect factual claims.

I will respond to this in the specific issue/PR (ops, reopened the relevant issue). In any case, I was waiting for feedback from @TomCjones and contacted the spec editor.

-- 
GitHub Notification of comment by simoneonofri
Please view or discuss this issue at https://github.com/w3c/securityig/issues/13#issuecomment-2847616980 using your GitHub account


-- 
Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config

Received on Friday, 2 May 2025 16:19:20 UTC