Closed Bug 1012669 Opened 11 years ago Closed 8 years ago

[B2G] SecReview of BuddyUp

Categories

(mozilla.org Graveyard :: Security Assurance: FxOS Review, task)

x86_64
Linux
task
Not set
normal

Tracking

(Not tracked)

RESOLVED FIXED

People

(Reporter: arroway, Assigned: arroway)

References

Details

Opening a bug for the secreview of the project app BuddyUp. The code is currently on github: https://github.com/mozilla/buddyup BuddyUp is a service meant to have users interacting and helping other users needing support by allowing "herlpers" to chat and take control over a user's device.
Not sure if we need a security review on demo code? This is all prototyped, not actually going to any official Mozilla server to be used by the public. It will only be used for a demo in June.
Stephanie opened this so that they are able to keep track on BuddyUp changes and help us when this will be the case. The github link was shared with Security team a while ago, there won't be made a code review now.
Jen, as Hermina explained, I'm keeping track of the project so we can help on the security perspective when needed during the designing phase. The earlier we are in contact, the less surprises they are for everyone :)
Hi, please add me to meetings so that we can help out with the security review process.
Assignee: nobody → ptheriault
Assignee: ptheriault → stephouillon
Blocks: 1045031
BuddyUp project plan: https://mana.mozilla.org/wiki/display/ProductMgmt/FxOS+-+BuddyUp+Project BuddyUp dev plan - https://trello.com/b/uJahiZW4/buddy-up-status-of-user-stories-for-phase-1 Code for phase 1: Backend: https://github.com/mozilla/kitsune FxOS app:https://github.com/mozilla/buddyup/ Mike, could you please indicate if there's a specific location with BuddyUp APIs in kitsune so that it's easier for security to check?
Flags: needinfo?(yboily)
Flags: needinfo?(stephouillon)
Flags: needinfo?(mcooper)
Thx Hermina for the pointers.
Flags: needinfo?(stephouillon)
Flags: sec-review?(stephouillon)
Flags: sec-review?(stephouillon)
Status: NEW → RESOLVED
Closed: 8 years ago
Resolution: --- → FIXED
Product: mozilla.org → mozilla.org Graveyard
Flags: needinfo?(yvanboily+mozbugmail)
Flags: needinfo?(mcooper)
You need to log in before you can comment on or make changes to this bug.