Page MenuHomePhorge

PolicyProject
ActivePublic

Members

  • This project does not have any members.
  • View All

Watchers

  • This project does not have any watchers.
  • View All

Details

Description

The Policy App implements policy controls for other apps

Recent Activity

Sat, Jan 25

Cigaryno updated the task description for T15128: Differential: Allow to change "Default Edit Policy".
Sat, Jan 25, 19:23 · Spam mitigation, Policy, Differential, User-Cigaryno
Cigaryno updated the task description for T15128: Differential: Allow to change "Default Edit Policy".
Sat, Jan 25, 18:51 · Spam mitigation, Policy, Differential, User-Cigaryno

Fri, Jan 17

Cigaryno added a project to T15175: Granularize Legalpad view/edit/sign permissions: Legalpad.
Fri, Jan 17, 11:14 · Legalpad, Policy, User-valerio.bozzolan, Affects-Wikimedia

Tue, Jan 14

Cigaryno added a project to T15407: People: profile picture should be editable by their author (not by "No one"): Policy.
Tue, Jan 14, 15:00 · Policy, User-valerio.bozzolan, People
Cigaryno renamed T15128: Differential: Allow to change "Default Edit Policy" from Differential: Allow to change "Can Edit Revisions" to Differential: Allow to change "Default Edit Policy".
Tue, Jan 14, 14:52 · Spam mitigation, Policy, Differential, User-Cigaryno
Cigaryno renamed T15128: Differential: Allow to change "Default Edit Policy" from Allow users to change the default edit policy of revisions to Differential: Allow to change "Can Edit Revisions".
Tue, Jan 14, 14:51 · Spam mitigation, Policy, Differential, User-Cigaryno
Cigaryno set the icon for Policy to Project.
Tue, Jan 14, 14:49
Cigaryno added a project to T15948: Allow public API access when equivalent public web access exists: Policy.
Tue, Jan 14, 14:49 · Policy, Conduit, Phorge

Dec 28 2024

Cigaryno moved T15128: Differential: Allow to change "Default Edit Policy" from Backlog to Feature Requests on the Differential board.
Dec 28 2024, 18:33 · Spam mitigation, Policy, Differential, User-Cigaryno

Dec 26 2024

Cigaryno added a project to T15128: Differential: Allow to change "Default Edit Policy": Spam mitigation.
Dec 26 2024, 08:35 · Spam mitigation, Policy, Differential, User-Cigaryno

Dec 18 2024

Cigaryno moved T15277: Nameable, reusable Policies from Backlog to New Features on the Feature Requests board.
Dec 18 2024, 15:59 · Policy, Feature Requests
Cigaryno moved T15128: Differential: Allow to change "Default Edit Policy" from Backlog to New Features on the Feature Requests board.
Dec 18 2024, 15:59 · Spam mitigation, Policy, Differential, User-Cigaryno
Cigaryno added a project to T15128: Differential: Allow to change "Default Edit Policy": Feature Requests.
Dec 18 2024, 15:58 · Spam mitigation, Policy, Differential, User-Cigaryno

Dec 14 2024

taavi closed T15970: phurl: Allow setting default edit policy for URLs as Resolved by committing rP18336f0b9a98: Allow customizing default Phurl view and edit policies.
Dec 14 2024, 07:57 · Policy, Feature Requests

Dec 11 2024

valerio.bozzolan attached a referenced file: F2669861: AFTER.png.
Dec 11 2024, 07:21 · Policy, Feature Requests
valerio.bozzolan attached a referenced file: F2669862: BEFORE.png.
Dec 11 2024, 07:21 · Policy, Feature Requests
valerio.bozzolan updated the task description for T15970: phurl: Allow setting default edit policy for URLs.
Dec 11 2024, 07:21 · Policy, Feature Requests

Dec 10 2024

valerio.bozzolan added a project to T15405: Slowvote Application: allow to change the Creation Policy (Default Edit Policy): Spam mitigation.
Dec 10 2024, 13:56 · Spam mitigation, User-valerio.bozzolan, Policy, Affects-Wikimedia

Dec 8 2024

taavi added a revision to T15970: phurl: Allow setting default edit policy for URLs: D25850: Allow customizing default Phurl view and edit policies.
Dec 8 2024, 10:37 · Policy, Feature Requests
valerio.bozzolan added a project to T15970: phurl: Allow setting default edit policy for URLs: Policy.

Thanks. I see, from this page is not possible:

Dec 8 2024, 09:49 · Policy, Feature Requests

Nov 20 2023

valerio.bozzolan moved T15672: Allow to tune "Invite Users" policy from Backlog to Code Sprint Candidate on the User-valerio.bozzolan board.
Nov 20 2023, 18:53 · User-valerio.bozzolan, Policy, People
valerio.bozzolan updated the task description for T15672: Allow to tune "Invite Users" policy.
Nov 20 2023, 18:50 · User-valerio.bozzolan, Policy, People
valerio.bozzolan triaged T15672: Allow to tune "Invite Users" policy as Low priority.
Nov 20 2023, 18:48 · User-valerio.bozzolan, Policy, People

Nov 13 2023

valerio.bozzolan added a comment to T15486: Do not expose "Contact Numbers" in user settings when no SMS support is set up in Phorge.

Also, I'm OK with the change also because of GDPR's principle of minimization. I mean, Phorge avoids to collect unnecessary data, and this is nice.

Nov 13 2023, 14:52 · Policy
valerio.bozzolan added a comment to T15486: Do not expose "Contact Numbers" in user settings when no SMS support is set up in Phorge.

As a side note, it's possible that somebody in the world was using the Phone number feature in a way that was then integrated with their custom management system, accessing this information via plain SQL.

Nov 13 2023, 14:37 · Policy
aklapper closed T15486: Do not expose "Contact Numbers" in user settings when no SMS support is set up in Phorge as Resolved by committing rP282e37aaf682: Do not expose Contact Numbers settings panel when no SMS support configured.
Nov 13 2023, 13:04 · Policy

Nov 11 2023

aklapper closed T15443: Add Diffusion policy capability "Can Edit and View Identities" as Resolved by committing rP90f651d669e4: Add Diffusion policy capability "Can Edit and View Identities".
Nov 11 2023, 12:27 · Diffusion, Policy

Oct 27 2023

valerio.bozzolan added a project to T15486: Do not expose "Contact Numbers" in user settings when no SMS support is set up in Phorge: Policy.
Oct 27 2023, 09:30 · Policy

Oct 26 2023

aklapper renamed T15443: Add Diffusion policy capability "Can Edit and View Identities" from Add Diffusion policy capability "Can create and edit Identities" to Add Diffusion policy capability "Can Edit and View Identities".
Oct 26 2023, 19:36 · Diffusion, Policy
aklapper added a revision to T15443: Add Diffusion policy capability "Can Edit and View Identities": D25450: Add Diffusion policy capability "Can Edit and View Identities".
Oct 26 2023, 19:30 · Diffusion, Policy

Jul 2 2023

avivey added a comment to T15443: Add Diffusion policy capability "Can Edit and View Identities".

Also, this mashes up Diffusion and Repositories to add confusion

Jul 2 2023, 20:04 · Diffusion, Policy
aklapper added a comment to T15443: Add Diffusion policy capability "Can Edit and View Identities".

I don't get the code.
src/applications/diffusion/controller/DiffusionIdentityViewController.php (note the View in its name) includes stuff like
$edit_uri = $this->getApplicationURI("identity/edit/{$id}/") defining ->setName(pht('Edit Identity')) (note the Edit here).
Also, this mashes up Diffusion and Repositories to add confusion (DiffusionIdentityEditController calls PhabricatorRepositoryIdentityEditEngine?).
I think I give up.

Jul 2 2023, 19:12 · Diffusion, Policy

Jun 29 2023

Cigaryno added a project to T15443: Add Diffusion policy capability "Can Edit and View Identities": Diffusion.

It's important to restrict the ability to create Diffusion IDs.

Jun 29 2023, 15:23 · Diffusion, Policy
aklapper added a comment to T15443: Add Diffusion policy capability "Can Edit and View Identities".

Patch in P13 is incomplete, policy does not cover going to /diffusion/identity/edit/1/ and setting Assigned To to another user but should.

Jun 29 2023, 12:16 · Diffusion, Policy
aklapper added a comment to T15443: Add Diffusion policy capability "Can Edit and View Identities".
In T15443#9918, @avivey wrote:

It also might make sense to hide the actual list from the general public (it's a mapping of emails to users).

Jun 29 2023, 11:49 · Diffusion, Policy

Jun 23 2023

valerio.bozzolan added a project to T15271: Fix Exception "PhutilMissingSymbolException" that can happen after new Countdown permission: Bug Reports.
Jun 23 2023, 15:26 · Bug Reports, Policy, User-valerio.bozzolan, Affects-Wikimedia

Jun 19 2023

valerio.bozzolan added a project to T15438: Add policy capability "Can create Dashboards": Dashboards.
Jun 19 2023, 10:26 · Dashboards, Policy
aklapper closed T15438: Add policy capability "Can create Dashboards" as Resolved by committing rP1c59b6542136: Dashboards: add capability who can create Dashboards.
Jun 19 2023, 10:12 · Dashboards, Policy

Jun 7 2023

speck added a comment to T15443: Add Diffusion policy capability "Can Edit and View Identities".

The "Create Identity" button on /diffusion/identity/ should be guarded by this new policy access, though currently that form is not functional - see T15453

Jun 7 2023, 18:03 · Diffusion, Policy
valerio.bozzolan merged T15451: Implement Diffusion identity reassignment access control into T15443: Add Diffusion policy capability "Can Edit and View Identities".
Jun 7 2023, 15:52 · Diffusion, Policy
valerio.bozzolan merged task T15451: Implement Diffusion identity reassignment access control into T15443: Add Diffusion policy capability "Can Edit and View Identities".
Jun 7 2023, 15:52 · Policy, Security, Feature Requests, Diffusion
smith added a comment to T15443: Add Diffusion policy capability "Can Edit and View Identities".

It also might make sense to hide the actual list from the general public

I agree. Wouldn't it make sense to put it behind repository.identity.view?

Jun 7 2023, 12:04 · Diffusion, Policy
smith closed T15451: Implement Diffusion identity reassignment access control as Invalid.

It turns out that this is a duplicate:
T15443: Add Diffusion policy capability "Can Edit and View Identities"

Jun 7 2023, 12:01 · Policy, Security, Feature Requests, Diffusion
avivey added a comment to T15443: Add Diffusion policy capability "Can Edit and View Identities".

Would it make sense to put creating identities behind the existing Edit policy of the repository?

Jun 7 2023, 11:54 · Diffusion, Policy
aklapper added a comment to T15443: Add Diffusion policy capability "Can Edit and View Identities".

Would it make sense to put creating identities behind the existing Edit policy of the repository?

Jun 7 2023, 11:32 · Diffusion, Policy
smith added a comment to T15451: Implement Diffusion identity reassignment access control.

But, they identities probably should be editable only for:

  • people who can edit the repository (people who administer it)
  • you, if the email matches yours (since you somehow pushed in the repository)
Jun 7 2023, 10:08 · Policy, Security, Feature Requests, Diffusion
valerio.bozzolan added a project to T15451: Implement Diffusion identity reassignment access control: Policy.
Jun 7 2023, 10:04 · Policy, Security, Feature Requests, Diffusion

Jun 3 2023

speck added a comment to T15443: Add Diffusion policy capability "Can Edit and View Identities".

As an approach this seems good to me. Would it make sense to put creating identities behind the existing Edit policy of the repository?

Jun 3 2023, 15:59 · Diffusion, Policy
aklapper added a comment to T15443: Add Diffusion policy capability "Can Edit and View Identities".

Cannot properly test locally (too many exceptions on PHP8.2 trying to create a local Git repo and commits to be indexed in Diffusion) how much this change would actually affect both editing and creating (or not) so I dumped an untested patch into P13

Jun 3 2023, 12:07 · Diffusion, Policy
aklapper added a project to T15443: Add Diffusion policy capability "Can Edit and View Identities": Policy.
Jun 3 2023, 09:47 · Diffusion, Policy