Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Node.js Security team Meeting 2024-03-28 #1260

Closed
mhdawson opened this issue Mar 25, 2024 · 2 comments · Fixed by #1268
Closed

Node.js Security team Meeting 2024-03-28 #1260

mhdawson opened this issue Mar 25, 2024 · 2 comments · Fixed by #1268
Assignees

Comments

@mhdawson
Copy link
Member

Time

UTC Thu 28-Mar-2024 14:00 (02:00 PM):

Timezone Date/Time
US / Pacific Thu 28-Mar-2024 07:00 (07:00 AM)
US / Mountain Thu 28-Mar-2024 08:00 (08:00 AM)
US / Central Thu 28-Mar-2024 09:00 (09:00 AM)
US / Eastern Thu 28-Mar-2024 10:00 (10:00 AM)
EU / Western Thu 28-Mar-2024 14:00 (02:00 PM)
EU / Central Thu 28-Mar-2024 15:00 (03:00 PM)
EU / Eastern Thu 28-Mar-2024 16:00 (04:00 PM)
Moscow Thu 28-Mar-2024 17:00 (05:00 PM)
Chennai Thu 28-Mar-2024 19:30 (07:30 PM)
Hangzhou Thu 28-Mar-2024 22:00 (10:00 PM)
Tokyo Thu 28-Mar-2024 23:00 (11:00 PM)
Sydney Fri 29-Mar-2024 01:00 (01:00 AM)

Or in your local time:

Links

Agenda

Extracted from security-wg-agenda labelled issues and pull requests from the nodejs org prior to the meeting.

nodejs/security-wg

Invited

  • Security wg team: @nodejs/security-wg

Observers/Guests

Notes

The agenda comes from issues labelled with security-wg-agenda across all of the repositories in the nodejs org. Please label any additional issues that should be on the agenda before the meeting starts.

Joining the meeting

https://zoom.us/j/92309450775

  • link for participants: <>
  • For those who just want to watch We stream our conference call straight to YouTube so anyone can listen to it live, it should start playing at https://www.youtube.com/c/nodejs+foundation/live when we turn it on. There's usually a short cat-herding time at the start of the meeting and then occasionally we have some quick private business to attend to before we can start recording & streaming. So be patient and it should show up.
  • youtube admin page: https://www.youtube.com/my_live_events?filter=scheduled

Invitees

Please use the following emoji reactions in this post to indicate your
availability.

  • 👍 - Attending
  • 👎 - Not attending
  • 😕 - Not sure yet
@mhdawson mhdawson self-assigned this Mar 25, 2024
@UlisesGascon
Copy link
Member

UlisesGascon commented Mar 27, 2024

I won't be able to attend this time as I am in PTO, but I will re-engage from the next one 👍. I will update the scorecard soon

@UlisesGascon
Copy link
Member

The OSSF scorecard analysis, I will say that the only actionable part is related to undici. see

Screenshot from 2024-03-27 12-00-35

Note: seems like the last OSSF Scorecard analysis failed to collect Branch Protection data, so the scoring can be affected in most of the repositories.

PR details in #1267

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging a pull request may close this issue.

2 participants