Skip to content

Commit 1468bab

Browse files
committed
✨ 2024-02-14 agenda
1 parent 9fa2968 commit 1468bab

File tree

4 files changed

+44
-12
lines changed

4 files changed

+44
-12
lines changed

README.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -4,7 +4,7 @@ This repository contains documents, agendas, and notes for the ECMAScript - Secu
44

55
## Agenda
66

7-
see [2023-12-13](meetings/notes/2023/2023-12-13.md) and [the backlog](meetings/notes/backlog.md) 👀
7+
see [2024-02-14](meetings/notes/2024/2024-02-14.md) and [the backlog](meetings/notes/backlog.md) 👀
88

99
## Meetings
1010

@@ -14,6 +14,7 @@ Meeting link: <https://meet.google.com/rwh-opnw-cnk>
1414

1515
<!-- DST below -->
1616

17+
<!--
1718
### 2nd Wednesday / Thursday each month (EMEA-friendly)
1819
1920
| | |
@@ -29,10 +30,10 @@ Meeting link: <https://meet.google.com/rwh-opnw-cnk>
2930
| US / Central | 20:00 Tuesday |
3031
| UTC | 01:00 Wednesday |
3132
| China | 09:00 Wednesday |
33+
-->
3234

3335
<!-- not DST below -->
3436

35-
<!--
3637
### 2nd Wednesday / Thursday each month (EMEA-friendly)
3738

3839
| | |
@@ -48,7 +49,6 @@ Meeting link: <https://meet.google.com/rwh-opnw-cnk>
4849
| US / Central | 20:00 Tuesday |
4950
| UTC | 02:00 Wednesday |
5051
| China | 10:00 Wednesday |
51-
-->
5252

5353
## Folks
5454

meetings/notes/2024/2024-02-14.md

Lines changed: 25 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,25 @@
1+
# TG3 - 2024-02-14
2+
3+
## Folks
4+
5+
| Name | GH Username | TLA | Affiliation |
6+
| --------- | --------------- | --- | ------------ |
7+
| Full Name | @githubUsername | FNE | organization |
8+
| | | | |
9+
10+
## Agenda
11+
12+
> [!NOTE]
13+
> See [backlog.md](backlog.md) for outstanding action items and agenda topics.
14+
15+
Happy Valentine's Day to all whom'st've celebrate! 💘
16+
17+
| Topic | Presenter(s) |
18+
| -------------------------------------------------------------------------------------- | ---------------- |
19+
| review issues in security repo | Chris de Almeida |
20+
| ? discuss [WasmGC shared memory proposal][wasm] / [shared structs proposal][structs] ? | |
21+
| ? does TC39 need a formal security review for proposals? [related issue][related] | |
22+
23+
[wasm]: https://github.com/WebAssembly/shared-everything-threads/blob/main/proposals/shared-everything-threads/Overview.md
24+
[structs]: https://github.com/tc39/proposal-structs
25+
[related]: https://github.com/tc39/security/issues/4

meetings/notes/backlog.md

Lines changed: 4 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -2,19 +2,11 @@
22

33
## Action Items
44

5-
- ACTION (MM): reach out to Natalie Silvanovich for interest in participation
65
- ACTION: do we move any issues from public `security` repo?
7-
- GH vulnerability disclosure reporting feature
8-
- ACTION: CDA: better understanding of the GH reporting mechanism and details
9-
- ACTION: need to understand what access GH has to vulnerability disclosure data
10-
- ACTION: CDA: look at new google meet settings to avoid host gatekeeping
116

127
## Agenda Items
138

14-
- incoming and outgoing vulnerability disclosure policy
15-
- review notes from [2023-08-09](/meetings/notes/2023/2023-08-09.md) as that is where important feedback and unanswered questions appear
169
- general policy on outside collaborators joining the meeting
17-
- should TG3 repo be public?
1810
- Strategies used and features/invariants relied upon to write secure programs today (Michael Ficarra)
1911
- Adopting something like the W3C Self-Review Questionnaire: Security and Privacy
2012
- IETF has a similar doc: <https://datatracker.ietf.org/doc/html/rfc3552>
@@ -37,8 +29,11 @@
3729
- Explore language capabilities that are undeniable, not virtualizable. (MF)
3830
- proposals
3931
- review security impact of (Shared) Structs proposal - <https://github.com/tc39/proposal-structs>
32+
- and [WasmGC shared memory proposal](https://github.com/WebAssembly/shared-everything-threads/blob/main/proposals/shared-everything-threads/Overview.md)
4033
- does TC39 need a formal security review for proposals?
41-
- JHD has a related issue on this: <http://github.com/tc39/process-document/pull/18>
34+
- related issues on this:
35+
- <https://github.com/tc39/security/issues/4>
36+
- <http://github.com/tc39/process-document/pull/18>
4237
- MM: Existing code can run in hardened mode
4338
- biggest problem with running existing code in hardened mode wrt builtins is overriding
4439
- find a means to suppress override mistake (if possible)

reports/2024/04.md

Lines changed: 12 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,12 @@
1+
# 2024 April Plenary Report
2+
3+
this is a shortlist of items to report to TG1
4+
5+
if there are materials being presented at plenary, it would be good to add a link here
6+
7+
## Updates
8+
9+
- reminder of TG3 meeting times (copy from [README](/README.md))
10+
-
11+
12+
## Items Seeking Committee Feedback and/or Consensus

0 commit comments

Comments
 (0)