XMPP Council - 2022-04-13


  1. moparisthebest

    is lacking important security considerations a reason to -1 a protoxep ? or can we ask them to fix it and postpone the vote or how does that work?

  2. Ge0rG

    AFAIR we have accepted proto-XEPs with zero security considerations in the past, in the expectation that those would be fledged out

  3. jonas’

    ack

  4. jonas’

    security considerations are tricky, and the idea is to develop as much as possible of the tricky stuff after the thing has entered the IPR policy of the XSF

  5. jonas’

    which is only after acceptance

  6. moparisthebest

    that in particular makes me nervous

  7. jonas’

    propose a patch right away?

  8. moparisthebest

    the one up for vote makes JID harvesting trivial

  9. moparisthebest

    in fact it doesn't even mention if you should have a mutual subscription before returning the result, maybe that means you shouldn't, but unsure

  10. jonas’

    I think that's not undesirable in the social networking usecases

  11. daniel

    It's time

  12. daniel

    1) Roll call

  13. Ge0rG ,o/

  14. moparisthebest

    at the bare minimum it should say the server should respond identically in the user-doesn't-exist and user-exists-but-has-no-public-subscriptions case

  15. larma

    👋️

  16. jonas’

    I am kind of here

  17. moparisthebest

    o/

  18. daniel

    2) Agenda Bashing

  19. daniel

    no bashing today

  20. daniel

    3) Editors update - Proposed XMPP Extension: Pubsub Public Subscriptions (https://xmpp.org/extensions/inbox/pubsub-public-subscriptions.html) - UPDATED: XEP-0356 (Privileged Entity) (https://xmpp.org/extensions/xep-0356.html)

  21. daniel

    4) Items for voting

  22. daniel

    a) Proposed XMPP Extension: Pubsub Public Subscriptions (https://xmpp.org/extensions/inbox/pubsub-public-subscriptions.html)

  23. daniel

    +1

  24. Ge0rG

    +1

  25. larma

    +1

  26. moparisthebest

    +1 but lacking important security considerations, really need those added first thing after acceptance

  27. jonas’

    +1, also +1 to what moparisthebest said

  28. daniel

    awesome. thank you

  29. daniel

    5) Pending votes

  30. daniel

    none

  31. daniel

    6) Date of Next

  32. daniel

    +1w wfm

  33. Ge0rG

    +1

  34. moparisthebest

    +1w wfm

  35. larma

    I might be in a train next week, so expect spotty connectivity 😀

  36. jonas’

    +1w wfm

  37. daniel

    7) AOB

  38. jonas’

    none from me

  39. daniel

    8) Close

  40. daniel

    Thank you everyone

  41. moparisthebest

    thanks daniel

  42. larma

    Thanks daniel 🙂

  43. jonas’

    okay, gotta run, too. see you folks!

  44. Ge0rG

    Thanks daniel, thanks everyone!