Security/B2G: Difference between revisions

1,129 bytes added ,  15 February 2016
→‎Summary: rm huseby, add tedd, sort alphabetically
(→‎Summary: rm huseby, add tedd, sort alphabetically)
 
(45 intermediate revisions by 4 users not shown)
Line 1: Line 1:
=Firefox OS Security Assurance=
=Firefox OS Security Team=
== Summary ==
== Summary ==
{| class="fullwidth-table"
{| class="fullwidth-table"
  |-
  |-
  | style="width:20%" | '''Leads'''
  | style="width:20%" | '''Lead'''
  | [mailto:dchan@mozilla.com David Chan] (irc: dchan)<br />
  | [mailto:ptheriault@mozilla.com Paul Theriault] (irc: pauljt)
[mailto:ptheriault@mozilla.com Paul Theriault] (irc: ptheriault)
  |-
  |-
  | '''Contributors'''
  | '''Team Members'''
  | TBD
  | [mailto:freddyb@mozilla.com Frederik Braun] (irc: freddyb), [mailto:jhector@mozilla.com Julian Hector] (irc: tedd), [mailto:cr@mozilla.com Christiane Ruetten] (irc: cr), [mailto:arroway@mozilla.com Stéphanie Ouillon] (irc: arroway)
  |-
  |-
  | '''References'''
  | '''References'''
  | [https://developer.mozilla.org/en-US/docs/Mozilla/Firefox_OS/Security/Security_model Firefox OS Security Model Overview]
  |[[Security/B2G/Goals| Goals]]<br>
[[Security/B2G/Team_responsibilities|Team Responsibilities]]<br>
  |}
  |}


==Goals==
== Useful Information ==
# FirefoxOS related security reviews: [[Security/B2G/Reviews]]
'''Getting assistance from the FxOS security team'''
# Document Firefox OS Security : [[Security/B2G/Documentation]]
* Need Firefox OS security review? Flag your bug with "sec‑review?" (needinfo if urgent)
# Develop and land tests for security features:  [[B2G/QA/API_Permissions_Test_Plan]], more tests to be planned
* [http://www.mozilla.org/security/#For_Developers Report a FxOS security issue]
# Engage communities & third-parties for Firefox OS security review and testing: [[Security/B2G/Engagement]]
# Drive OS-layer security improvement: [[B2G/Architecture/Runtime_Security]]
# Secure app developer/reviewer guidelines/tools: [[Security/B2G/Guidance]]


== Useful Links ==
''' Security reviews planning'''
Wiki
* [https://docs.google.com/spreadsheets/d/1vuw7_4I6o20I2n17_-3i43AmUE9TM88F2H7NBhryqwM/edit#gid=0 On-going and planned security reviews]
* [[Gaia | Gaia wiki page]]
 
* [[B2G | Main B2g wiki page]]
'''FxOS Security Documentation'''
* [https://wiki.mozilla.org/WebAPI Firefox OS Web API]
* [https://developer.mozilla.org/en-US/Firefox_OS/Security FxOS Security Documentation]
MDN
* [https://developer.mozilla.org/en-US/docs/Mozilla/Firefox_OS/Security/Security_model Firefox OS Security Model Overview]
* [https://developer.mozilla.org/en-US/docs/Mozilla/Firefox_OS MDN page]
* [https://developer.mozilla.org/en-US/Apps/Build/App_permissions Web App Permissions]
* [https://developer.mozilla.org/en-US/docs/Apps Web Apps on MDN]
* [https://developer.mozilla.org/en-US/Apps/Security_guidelines Security guidelines for App developers and reviewers]
* [https://developer.mozilla.org/en-US/docs/Apps/Marketplace_review_criteria App review criteria on MDN]
* [https://developer.mozilla.org/en-US/docs/Apps/Marketplace_review_criteria App review criteria on MDN]
Various
 
* [http://mounirlamouri.github.com/sysapps/proposals/RunTime-Security/Overview.html Draft specification: Runtime and Security Model for Web Applications]
'''Other Helpful Links'''
* [https://docs.google.com/spreadsheet/ccc?key=0Akyz_Bqjgf5pdENVekxYRjBTX0dCXzItMnRyUU1RQ0E#gid=0 Basecamp Permissions Model]
* [[Marketplace/Reviewers/Apps/Guide/SecReviewTraining| Security training for App reviewers]]
* [[Security/B2G/GaiaTesting| Getting starting testing Gaia and Web Apps]]
* [https://developer.mozilla.org/en-US/Firefox_OS/Security/Intercepting_traffic_using_a_proxy Intercepting traffic with a proxy on Firefox OS]
* [[Security/B2G/GaiaTesting| Getting starting testing Gaia and Web Apps (outdated)]]
 
== Getting involved ==
'''Guidelines'''
* [[Security/B2G/Contribute| How to contribute]]
 
'''Getting in touch with us'''
* IRC channel #FxOSSec on irc.mozilla.org
* The [https://mail.mozilla.org/listinfo/ffos-secure ffos-secure@mozilla.org] public mailing list is a good place to start discussing about security in the Firefox OS ecosystem.
* The [https://guides.mozilla-community.org/c/security/firefox-os Guides forum] is here to help you find your way to make your first contributions.
 
== Meetings ==
 
'''Connection Information'''
* '''Dial-in:'''
** +1 650 903 0800 x92 Conf 98500#
** +1 416 848 3114 x92 Conf 98500#
** +1 800 707 2533 (pin 369) Conf 98500# (toll free, Skype)
* '''Vidyo:''' B2G Vidyo room
 
'''FirefoxOS Security Weekly Meeting'''
* Time: Tuesdays 1300 PDT / 2100 CET / 0400 CST / 2000 UTC
* Notes during the meeting are captured on [https://etherpad.mozilla.org/firefoxossecteammtg this etherpad].


== Subpages of {{FULLPAGENAME}}==
== Subpages of {{FULLPAGENAME}}==
{{Special:PrefixIndex/{{FULLPAGENAME}}/}}
{{Special:PrefixIndex/{{FULLPAGENAME}}/}}
Confirmed users
236

edits