[Wikitech-l] TechCom Radar 2020-06-24

2020-06-26 Thread Daniel Kinzler
Hi all,

Here are the minutes from this week's TechCom meeting:

Last Call: Amendment to the Stable interface policy (T255803)
* Ticket: https://phabricator.wikimedia.org/T255803
* No big change in substance from the policy adopted in March
* Draft policy: 
https://www.mediawiki.org/wiki/User:Krinkle/Stable_interface_policy
* Description of:
https://www.mediawiki.org/wiki/User:Krinkle/Stable_interface_policy/Changes
* The new policy is on Last Call until July 8th. If you have any concerns about
the draft, please comment on the ticket. If no concerns remain unaddressed by
July 8, the draft will be adopted as the new policy.

Approved: Drop support for IE 8 (T248061)
* https://phabricator.wikimedia.org/T248061
* Support for IE 8 will be maintained for the upcoming 1.35 release
* Code needed for IE 8 support can be dropped from master (and Wikimedia sites)
after 1.35 * has been branched in July.

No office hours scheduled for next week.

You can also find our meeting minutes at


See also the TechCom RFC board
.

If you prefer you can subscribe to our newsletter here


-- 
Daniel Kinzler
Principal Software Engineer, Core Platform
Wikimedia Foundation

___
Wikitech-l mailing list
Wikitech-l@lists.wikimedia.org
https://lists.wikimedia.org/mailman/listinfo/wikitech-l

Re: [Wikitech-l] Logging everyone out

2020-06-26 Thread Steven Walling
Good to know it was so few people. Thanks for your diligence as always.

On Thu, Jun 25, 2020 at 10:57 PM Tim Starling 
wrote:

> On 26/6/20 3:26 pm, Steven Walling wrote:
> > Thanks Tim,
> >
> > 1. Does “saw the site” mean users actually had full or partial access to
> > the accounts of other users, or simply were viewing a cached version of
> the
> > site that appeared as if they were logged in as someone else?
>
> Users reportedly had full access to the accounts of other users.
>
> > How many users were impacted?
>
> We had three reports. We've added logging which should help to
> determine whether anyone else was affected. So far, the indications
> are that it is an extremely rare event.
>
> > 2. Does the WMF hold incident review meetings and publish reports about
> > what steps are taken to prevent repeat incidents with the same root
> cause?
>
> Incidents are documented at
> 
>
> Action items are tagged with the Incident Prevention tag in Phabricator:
> 
>
> Whether there is an incident review meeting depends on the nature of
> the incident.
>
> -- Tim Starling
>
>
> ___
> Wikitech-l mailing list
> Wikitech-l@lists.wikimedia.org
> https://lists.wikimedia.org/mailman/listinfo/wikitech-l
___
Wikitech-l mailing list
Wikitech-l@lists.wikimedia.org
https://lists.wikimedia.org/mailman/listinfo/wikitech-l