Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add security questionnaire answers #18

Merged
merged 19 commits into from
Jan 21, 2025
Merged

Add security questionnaire answers #18

merged 19 commits into from
Jan 21, 2025

Conversation

tomayac
Copy link
Owner

@tomayac tomayac commented Jan 20, 2025

Adding a separate questionnaire and both a security and privacy consideration section.

Things this needs to respond to:

@tomayac tomayac self-assigned this Jan 20, 2025
security-questionnaire.md Outdated Show resolved Hide resolved
security-questionnaire.md Outdated Show resolved Hide resolved
security-questionnaire.md Outdated Show resolved Hide resolved
security-questionnaire.md Outdated Show resolved Hide resolved
security-questionnaire.md Outdated Show resolved Hide resolved
security-questionnaire.md Outdated Show resolved Hide resolved
security-questionnaire.md Outdated Show resolved Hide resolved
security-questionnaire.md Outdated Show resolved Hide resolved
security-questionnaire.md Outdated Show resolved Hide resolved
security-questionnaire.md Outdated Show resolved Hide resolved
tomayac and others added 10 commits January 21, 2025 10:38
Co-authored-by: Christian Liebel <[email protected]>
Co-authored-by: Christian Liebel <[email protected]>
Co-authored-by: Christian Liebel <[email protected]>
Co-authored-by: Christian Liebel <[email protected]>
Co-authored-by: Christian Liebel <[email protected]>
Co-authored-by: Christian Liebel <[email protected]>
Co-authored-by: Christian Liebel <[email protected]>
Co-authored-by: Christian Liebel <[email protected]>
Co-authored-by: Christian Liebel <[email protected]>
Co-authored-by: Christian Liebel <[email protected]>
security-questionnaire.md Outdated Show resolved Hide resolved
@tomayac tomayac marked this pull request as ready for review January 21, 2025 13:25

## 02. Do features in your specification expose the minimum amount of information necessary to implement the intended functionality?


Yes, after explicit user consent, the API exposes only the existence of a file with a known hash and provides read access to it. No additional metadata nor write access is exposed.
Copy link
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Is this correct? The API also allows write access, at least once.

@tomayac
Copy link
Owner Author

tomayac commented Jan 21, 2025

@christianliebel Thanks for the review so far. If you have a moment, could you also see the new security and privacy considerations that I have added in 495572c.

README.md Outdated Show resolved Hide resolved
@tomayac tomayac merged commit 62a2e14 into main Jan 21, 2025
@tomayac tomayac deleted the fill-questionnaire branch January 21, 2025 17:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants