https://bugzilla.wikimedia.org/show_bug.cgi?id=55718

--- Comment #7 from Brad Jorsch <[email protected]> ---
(In reply to comment #6)
> From the revision tag, we can see that the edit was made via an OAuth
> application. How do you prove or disprove that this application was
> authorized to make an edit on your behalf?

Because if it wasn't then it couldn't have made the edit? It's like asking how
you prove or disprove that someone had the user right to delete a page that
they deleted. Absent major bugs or manipulation by people with shell access,
you know the person had the user right because they were able to make use of
it, and "so I can detect rare major bugs" doesn't seem very compelling.

A better example, perhaps, would be if you wanted to be able to audit when
exactly you gave that app permission to make edits on your behalf.

-- 
You are receiving this mail because:
You are the assignee for the bug.
You are on the CC list for the bug.
_______________________________________________
Wikibugs-l mailing list
[email protected]
https://lists.wikimedia.org/mailman/listinfo/wikibugs-l

Reply via email to