Skip to content

Commit

Permalink
meeting notes: 2024-06-12
Browse files Browse the repository at this point in the history
  • Loading branch information
TristanCacqueray committed Jun 12, 2024
1 parent 381bda6 commit ccf4e52
Showing 1 changed file with 35 additions and 0 deletions.
35 changes: 35 additions & 0 deletions meeting-notes/2024-06-12.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,35 @@
# SRT meeting 2024-06-12

Previously:
https://github.com/haskell/security-advisories/blob/main/meeting-notes/2024-05-29.md

## haskell.org security page

There is now https://www.haskell.org/security/

We still need to configre subdomains so advisories (which was redesigned to be compliant with Haskell Foundation design) index is automatically updated.

## CVSS Version 4

Initial PR to support CVSS Version 4 [#208](https://github.com/haskell/security-advisories/pull/208)

## Fixed git timestamp parsing logic

Switched to UTCTime everywhere to avoid unexpected issues [#201](https://github.com/haskell/security-advisories/pull/201).

## Snapshots to distribute advisories

Gautier worked on [#179](https://github.com/haskell/security-advisories/pull/179) to introduce a new export mode to hsec-sync to help downstream user (without git dependency).

## Ecosystem Workshop

Fraser introduced the SRT at the ZuriHac workshop.
The main issue to tackle is the SBOM with SPDX

## 2024 April\u2013June report

Fraser mostly completed it, we might want to add the slides he has used during ZuriHac Ecosystem Workshop in the repository.

## Advisory database

Additionally, 2 HSEC ID has been reserved for an embargoed vulnerability that we anticipate will be published in Q3.

0 comments on commit ccf4e52

Please sign in to comment.