https://bugzilla.wikimedia.org/show_bug.cgi?id=53008

--- Comment #62 from Rich Farmbrough <[email protected]> ---
@Alex: I have pointed out a violation of WMF's privacy policy, with possibly
life threatening implications.  Somewhat naively I expected that this would be
prioritised as an urgent fix.  Expecting me to set up my own test bed to
evaluate my proposed fixes (which are partly other peoples proposals, of
course) is like expecting me to dig up the road when the water company has a
mains leak.

I made the page at Meta, because this is a WMF issue, it affects more than the
software, it affects process, it affects self-identification with the WMF and
it affects the configuring of WMF projects, including creating new
translations.  Louis who asked for the page seems perfectly happy to have it
there.

Generally I prefer not to tangentially mention other security problems, per
WP:BEANS.

Yes I was sort of aware that  there should be a $0, and meant to fix that. 
It's a wiki, you could have fixed it. :)

Of course knowing the block ID still allows you to see the block information,
if you know how to access the block log.  However this is better than being
told "The user was Fred Bloggs".

The later part of the proposal suggests reconfiguring the Block Log interface
so that the Block ID number is only visible to administrative users who will be
using the log to consider removing autoblocks.

-- 
You are receiving this mail because:
You are the assignee for the bug.
You are on the CC list for the bug.
_______________________________________________
Wikibugs-l mailing list
[email protected]
https://lists.wikimedia.org/mailman/listinfo/wikibugs-l

Reply via email to