Re: Require security review before FPWD

+1 for the guidelines, and security at early stage, w3c can not afford at the moment to have systematic security review, unless we recruit a larger security expert community.
Virginie

---- Karl Dubost a écrit ----

[....]
>
> Do not make it part of the process.
> On the other hand, publish a set of guidelines and how to implement them for reviewing security issues *when* editing a spec.
>
>
> --
> Karl Dubost 🐄
> http://www.la-grange.net/karl/

________________________________
 This message and any attachments are intended solely for the addressees and may contain confidential information. Any unauthorized use or disclosure, either whole or partial, is prohibited.
E-mails are susceptible to alteration. Our company shall not be liable for the message if altered, changed or falsified. If you are not the intended recipient of this message, please delete it and notify the sender.
Although all reasonable efforts have been made to keep this transmission free from viruses, the sender will not be liable for damages caused by a transmitted virus.

Received on Tuesday, 4 November 2014 08:41:00 UTC