Where communities thrive


  • Join over 1.5M+ people
  • Join over 100K+ communities
  • Free without limits
  • Create your own community
People
Repo info
Activity
  • 23:38
    conorsch commented #342
  • 23:31
    redshiftzero edited #5004
  • 23:31
    redshiftzero edited #5004
  • 23:30
    redshiftzero review_requested #5018
  • 23:30
    redshiftzero review_requested #5018
  • 23:30
    redshiftzero review_requested #5018
  • 23:30
    redshiftzero review_requested #5018
  • 23:30
    redshiftzero opened #5018
  • 23:30
    redshiftzero review_requested #5018
  • 23:21

    redshiftzero on backport-5014

    More consistent usage of two-fa… Catch a few more instances of 2… (compare)

  • 23:20

    redshiftzero on develop

    More consistent usage of two-fa… Catch a few more instances of 2… Merge pull request #5014 from f… (compare)

  • 23:20
    redshiftzero closed #5014
  • 22:42
    eloquence review_requested #5014
  • 22:42
    eloquence review_requested #5014
  • 22:42
    eloquence review_requested #5014
  • 22:42
    eloquence review_requested #5014
  • 22:42
    eloquence review_requested #5014
  • 22:42
    eloquence ready_for_review #5014
  • 22:38
    eloquence commented #5014
  • 22:19
    zenmonkeykstop commented #4966
Kevin O'Gorman
@zenmonkeykstop
down a tbb preference rabbithole, will take a look at current PRs and then call it a night too
pierwill
@pierwill

image.png

this is so freaking good. So freakign good

Kevin O'Gorman
@zenmonkeykstop
Just put in #4987 to address #4978 and now I'm gonna take a look at #4879 :laughing:
Erik Moeller
@eloquence

Hello everyone! Our standup is in 5 minutes at the usual location:

https://meet.google.com/ekb-kkhf-mrk

Anyone is welcome to participate! Notes are taken on an Etherpad and will be moved to the GitHub wiki by the end of the day.

Nina Eleanor Alter
@ninavizz
@pierwill Thank you! <3
Erik Moeller
@eloquence

Hello everyone! Our standup is in 5 minutes at the usual location:

https://meet.google.com/ekb-kkhf-mrk

Anyone is welcome to participate! Notes are taken on an Etherpad and will be moved to the GitHub wiki by the end of the day.

deeplow
@deeplow
quick question: the journalist's GPG key lives on sd-svs, right?
Allie Crevier
@creviera
sd-gpg has the private key
deeplow
@deeplow
ah, right
thanks
I forgot about the split gpg-thing
Allie Crevier
@creviera
if you open a terminal there you can check gpg -k
deeplow
@deeplow
Yup. Thanks
Allie Crevier
@creviera
:thumbsup:

oh good, we have something in our docs (first time I've seen it so was just wondering):

sd-gpg is a Qubes split-gpg AppVM, used to hold submission decryption keys and do the actual submission crypto.

Nina Eleanor Alter
@ninavizz
HI folks! There will be no UX meeting this week... so sleep-in, go to bed early, or enjoy the afternoon outside! Next week, we look forward to reconvening. :)
Erik Moeller
@eloquence

Hello everyone! Our standup is in 5 minutes at the usual location:

https://meet.google.com/ekb-kkhf-mrk

Anyone is welcome to participate! Notes are taken on an Etherpad and will be moved to the GitHub wiki by the end of the day.

Erik Moeller
@eloquence
Reminder: No GMeet standup on Fridays, and Monday's standup (and all standups hence) will start one hour earlier, at 9AM PST / 12 PM EST / 10:30 PM IST
Erik Moeller
@eloquence

Hello everyone! Our standup is in 5 minutes at the usual location (now an hour earlier, per discussion/poll):

https://meet.google.com/ekb-kkhf-mrk

Anyone is welcome to participate! Notes are taken on an Etherpad and will be moved to the GitHub wiki by the end of the day.

deeplow
@deeplow
@redshiftzero I documented my findings on "the track number of dispVMs issue" https://github.com/freedomofpress/securedrop-client/issues/52#issuecomment-555119776
redshiftzero
@redshiftzero
dope will take a look!
Kevin O'Gorman
@zenmonkeykstop
What has two thumbs and just submitted issue 5k
barryWhiteHat
@barryWhiteHat

@barryWhiteHat if you're looking specifically for interest/feedback from tech/security folk who work in newsrooms, it might be worth checking in with newsnerdery.slack.com/ on their #security channel(Slack is sadly all-pervasive in North American media). Totally anonymous material is often only used as a last resort by journalists, so a tool that would help sources maintain a level of anonymity while at the same time allowing for some attribution would be great. (One problem might be getting editors to trust it without understanding the math.)

@zenmonkeykstop I can't join this group i am afraid because you have to have an email address from a certain group. Is there anywhere else i shoudl ask?

Kevin O'Gorman
@zenmonkeykstop
Ho @barryWhiteHat sorry, I'm terrible at noticing gitter DMs. I'll ask on the group to see about getting you an invite or suggestions for other forums
Kevin O'Gorman
@zenmonkeykstop
OK, poked the admins, I'll see what transpires
Kevin O'Gorman
@zenmonkeykstop
@barryWhiteHat check the DMs :)
Erik Moeller
@eloquence

Hello everyone! Our standup is in 5 minutes at the usual location:

https://meet.google.com/ekb-kkhf-mrk

Anyone is welcome to participate! Notes are taken on an Etherpad and will be moved to the GitHub wiki by the end of the day.

redshiftzero
@redshiftzero

check this security bug out @deeplow: QubesOS/qubes-issues#5322

highly relevant to your comment yesterday re: security implications of stderr from qvm-open-in-dvm

(i was peekin around in the qubes bugtracker to see what issues have arisen from this vector)
deeplow
@deeplow
Oh wow! @redshiftzero I had not read that before. I just supposed that could be bad. Thanks for taking a look!
Kevin O'Gorman
@zenmonkeykstop
Hey all, wearing the RM hat this round - will be AFK at the time of change freeze so release branch will be cut tomorrow AM Eastern.
redshiftzero
@redshiftzero
:metal:
Kevin O'Gorman
@zenmonkeykstop
changelogs always take longer than you think :/ gonna set aside some time after this to look again at automatically generating them
redshiftzero
@redshiftzero
yep they really do
Erik Moeller
@eloquence

Hi folks! Sprint planning will kick off in 5 minutes in the usual location:

https://meet.google.com/ekb-kkhf-mrk

All associated materials can be found here:

https://pad.riseup.net/p/SecureDropSprint42

Kevin O'Gorman
@zenmonkeykstop
how would folks feel about paring down the QA matrix? I'm thinking specifically of removing the clean install scenarios for previously-supported hardware
redshiftzero
@redshiftzero
that makes a lot of sense, as long as we are testing a fresh install i think we are OK (i.e. doesn't need to be a fresh install on all hardware)
Kevin O'Gorman
@zenmonkeykstop
yeah, I'm leaving the fresh installs for VMs and NUC7s
Kevin O'Gorman
@zenmonkeykstop
QA matrix and test plan are up for those interested. @redshiftzero is building some debs
redshiftzero
@redshiftzero
:-D
Erik Moeller
@eloquence
Board and spreadsheet should be in sync w/ our discussions at sprint planning; notes from the meeting can also be found on the wiki.
Nina Eleanor Alter
@ninavizz
Howdy, all!! UX meeting tomorrow will focus on Qubes!!!! NOT the SD Workstation, but the Qubes OS itself. Please come, one and all, for whom this topic may be of interest... from a usability vantage. @kushaldas pls to come, if you're able to—and anyone else you may know who is an avid, new, or occasional Qubes user! :) https://github.com/freedomofpress/securedrop-ux/wiki/Meetings
KwadroNaut
@KwadroNaut
kushaldas: the 'Z' here https://forum.securedrop.org/t/about-the-translations-category/16 does it stand for 'Zulu time'?
(also the link to 'irc' for l10nlab is missing, if that exists)
rmol
@rmol
@KwadroNaut Zero, actually, for zero offset from UTC. https://en.wikipedia.org/wiki/ISO_8601#Coordinated_Universal_Time_(UTC)
rmol
@rmol
I think they may have stopped using IRC; they don't mention it in their wiki. So I've removed that link. Thanks.
Kevin O'Gorman
@zenmonkeykstop
1.2.0-rc1 debs are available on apt-test.freedom.press, thanks @redshiftzero for building and @emkll for approving!
KwadroNaut
@KwadroNaut
rmol: thanks for the info. re: irc, I never knew they've used it in the past. thanks for cleaning!
Erik Moeller
@eloquence

Hello everyone! Our standup is in 5 minutes at the usual location:

https://meet.google.com/ekb-kkhf-mrk

Anyone is welcome to participate! Notes are taken on an Etherpad and will be moved to the GitHub wiki by the end of the day.

KwadroNaut
@KwadroNaut
heh, I was in a translation mood, took me like 5 minutes to figure out that i'm 2 days early.