Wikimedia Security Team/Security Review Planning/2023-10-03

Minutes for the Security Team's Q2 2023 (FY24) (October to December) quarterly planning session

Date: 2023-10-03

Secscrum board: https://phabricator.wikimedia.org/tag/secscrum/

Attending:, CLemoisson-WMF, , ,

Below is from previous quarter, for now:

Completed Reviews, Previous Quarter
 * 1) Comms Wordpress plugins -  - T335004 - medium risk, waiting on requester
 * 2) endroid/qr-code PHP library -  - T339389 - low risk

Reviews That Need Follow-Up This Quarter
 * 1) Metrics Platform Control Plane Threat-Model -  - T335537
 * 2) Wikispeech - need to decline - T180021

Updates Made For Other Review Tasks
 * SpamRegex - - T241451 - ping requesters once more, then just resolve.
 * Our World In Data - - T324989 - now declined

Accepted Reviews To Complete This Quarter
 * 1)  -  - T344853
 * 2)  -  - T347104
 * 3)  -  - T347922