On Wed, 26 Sep 2018 23:02:45 +0100 Nick Lamb via dev-security-policy <[email protected]> wrote: > Thinking back to, for example, TSYS, my impression was that my post on > the Moral Hazard from granting this exception had at least as much > impact as you could expect for any participant. Mozilla declined to > authorise the (inevitable, to such an extent I pointed out that it > would happen months before it did) request for yet another exception > when TSYS asked again.
Correction: The incident I'm thinking of is First Data, not TSYS, a different SHA-1 exception. Nick. _______________________________________________ dev-security-policy mailing list [email protected] https://lists.mozilla.org/listinfo/dev-security-policy

