Last modified: 2014-09-25 23:05:20 UTC
We would like to roll out Capiunto to production. It needs a security review. The code is at https://git.wikimedia.org/summary/mediawiki%2Fextensions%2FCapiunto More information about Capiunto is at https://www.mediawiki.org/wiki/Extension:Capiunto
Already assigned to csteipp - does this need anything else to get it in the security review queue?
(In reply to Nik Everett from comment #1) > Already assigned to csteipp - does this need anything else to get it in the > security review queue? Don't think so... Given that this extension almost only hosts Lua code that is being executed with the same rights as user given Lua code, this should be quick to check.
Can you point to any more information about the extension, and timelines? I'm swamped with reviews right now. Is this more or less urgent than WikibaseQuery?
Less urgent than WikibaseQuery.
(In reply to Chris Steipp from comment #3) > Can you point to any more information about the extension? Can anyone answer this question?
This looks promising: https://git.wikimedia.org/blob/mediawiki%2Fextensions%2FCapiunto/1441b9ab1c126d7047e182a41497303a4a32a9bb/docs%2Finfobox.wiki
So "everyone I've asked" about the extension says the mw.org page needs more instructions. A link https://git.wikimedia.org/blob/mediawiki%2Fextensions%2FCapiunto/1441b9ab1c126d7047e182a41497303a4a32a9bb/docs%2Finfobox.wiki might help matters I think.
(In reply to Nik Everett from comment #7) > So "everyone I've asked" about the extension says the mw.org page needs more > instructions. A link > https://git.wikimedia.org/blob/mediawiki%2Fextensions%2FCapiunto/ > 1441b9ab1c126d7047e182a41497303a4a32a9bb/docs%2Finfobox.wiki might help > matters I think. Done that. Also the integration test cases (https://git.wikimedia.org/blob/mediawiki%2Fextensions%2FCapiunto/HEAD/tests%2Fphpunit%2Foutput%2FBasicRowTest.lua and https://git.wikimedia.org/blob/mediawiki%2Fextensions%2FCapiunto/HEAD/tests%2Fphpunit%2Foutput%2FBasicTest.lua) might be good as short examples.