Skip to content

Commit

Permalink
Merge pull request #618 from jyasskin/patch-1
Browse files Browse the repository at this point in the history
[ig/security] Fix a small grammar mistake in ig-security.html

@tantek @jyasskin thank you so much!
  • Loading branch information
simoneonofri authored Nov 8, 2024
2 parents 45906bd + 626e265 commit 4df0c3d
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion 2024/ig-security.html
Original file line number Diff line number Diff line change
Expand Up @@ -158,7 +158,7 @@ <h2>Motivation and Background</h2>
<section id="scope" class="scope">
<h2>Scope</h2>
<p>The Security Interest Group (SING) develops and documents guidelines, patterns, processes, and best practices for addressing security issues in Web standards.</p>
<p>SING supports, promotes, and structures the threat modeling for web standards and technologies. This approach can be used, along with other groups, for threats of different types, such as security, privacy, and other kinds of harm. Threat modeling is a joint activity between threat experts and groups that is developing technology or other documentation. It can be used to get an understanding of the impact of the technology and guide its development, as well as to write Security Considerations sections.</p>
<p>SING supports, promotes, and structures the threat modeling for web standards and technologies. This approach can be used, along with other groups, for threats of different types, such as security, privacy, and other kinds of harm. Threat modeling is a joint activity between threat experts and groups that are developing technology or other documentation. It can be used to get an understanding of the impact of the technology and guide its development, as well as to write Security Considerations sections.</p>
<p>SING provides "<a href="https://www.w3.org/Guide/documentreview/">horizontal review</a>", offering groups on-request guidance on security issues and mitigations specific to their technologies. SING aims to offer this review as early in the technology development lifecycle as requested, observing that early feedback is often more helpful. SING may also seek out technologies that benefit from earlier security reviews and conduct such reviews on its initiative.</p>
<p>SING identifies standardization work on security issues by collecting requirements, prototyping, and/or developing tests within the IG and recommending that the W3C move the work into other groups when appropriate.</p>
<p>SING may recommend mitigations for security issues in existing features of the Web platform, up to and including their deprecation.</p>
Expand Down

0 comments on commit 4df0c3d

Please sign in to comment.