Updated SOTD and sections 7 and 8 with links to bugs 22909 and 22910. These bugs track security and privacy considerations.
--- a/encrypted-media/encrypted-media-wd.html Tue Sep 17 08:31:22 2013 -0700
+++ b/encrypted-media/encrypted-media-wd.html Tue Sep 17 09:11:48 2013 -0700
@@ -119,7 +119,7 @@
replaced or obsoleted by other documents at any time. It is inappropriate to cite this document as other than work in progress.
</p>
<p class="non-normative">Note: It is an open issue whether and how the spec should do more to encourage/ensure CDM-level interop. See <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=20944">Bug 20944</a>.</p>
- <p class="non-normative">Note: It is an open issue whether and how the spec should provide privacy guidance for CDM implementations. See <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=20965">Bug 20965</a>.</p>
+ <p class="non-normative">Note: This specification contains sections for describing security and privacy considerations. These sections are not final and are tracked in <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=22909">Bug 22909</a> and <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=22910">Bug 22910</a>.</p>
<p>
This document was produced by a group operating under the <a href="http://www.w3.org/Consortium/Patent-Policy-20040205/">5 February 2004 W3C Patent Policy</a>.
W3C maintains a <a href="http://www.w3.org/2004/01/pp-impl/40318/status" rel="disclosure">public list of any patent disclosures</a> made in connection with
@@ -1074,11 +1074,14 @@
<h2 id="security">7. Security Considerations</h2>
<p><i>This section is non-normative.</i></p>
+ <div class="issue"><div class="issue-title"><span>Issue 3</span></div><p class=""><a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=22909">Bug 22909</a> - Needs non-normative Security Considerations section.</p></div>
<p><em>TODO: the task force has agreed that a security considerations section needs to be added but not what the contents should be. See <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=22909">Bug 22909</a></em></p>
<h2 id="privacy">8. Privacy Considerations</h2>
<p><i>This section is non-normative.</i></p>
+ <div class="issue"><div class="issue-title"><span>Issue 4</span></div><p class=""><a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=22910">Bug 22910</a> - Needs non-normative Privacy Consideration section.</p></div>
+
<h3 id="privacy-fingerprinting">8.1. Fingerprinting</h3>
<p>Malicious applications may be able to fingerprint users or user agents by detecting or enumerating the list of key systems that are supported.</p>
@@ -1130,7 +1133,7 @@
<h3 id="iso">9.2 ISO Base Media File Format</h3>
<div class="nonnormative">
- <p class="issue">Note: There is an open issue about how initialization data should be extracted from ISO BMFF content. See <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=17673">Bug 17673</a>.</p>
+ <div class="issue"><div class="issue-title"><span>Issue 5</span></div>Note: There is an open issue about how initialization data should be extracted from ISO BMFF content. See <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=17673">Bug 17673</a>.</div>
<p>This section defines the stream format and initialization data for ISO Base media File Format (ISOBMFF) content.</p>
<h4 id="iso-stream-format">9.2.1 Stream format</h4>
--- a/encrypted-media/encrypted-media.html Tue Sep 17 08:31:22 2013 -0700
+++ b/encrypted-media/encrypted-media.html Tue Sep 17 09:11:48 2013 -0700
@@ -117,7 +117,7 @@
replaced or obsoleted by other documents at any time. It is inappropriate to cite this document as other than work in progress.
</p>
<p class="non-normative">Note: It is an open issue whether and how the spec should do more to encourage/ensure CDM-level interop. See <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=20944">Bug 20944</a>.</p>
- <p class="non-normative">Note: It is an open issue whether and how the spec should provide privacy guidance for CDM implementations. See <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=20965">Bug 20965</a>.</p>
+ <p class="non-normative">Note: The specification contains sections for describing security and privacy considerations. These sections are not final and are tracked in <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=22909">Bug 22909</a> and <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=22910">Bug 22910</a>.</p>
<p>
This document was produced by a group operating under the <a href="http://www.w3.org/Consortium/Patent-Policy-20040205/">5 February 2004 W3C Patent Policy</a>.
W3C maintains a <a href="http://www.w3.org/2004/01/pp-impl/40318/status" rel="disclosure">public list of any patent disclosures</a> made in connection with
@@ -1064,19 +1064,23 @@
}</pre>
</div>
- <div class="issue">
-<div class="issue-title"><span>Issue 3</span></div>
-<p class=""><a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=20965">Bug 20965</a> - EME results in a loss of control over security and privacy.</p>
-</div>
-
<h2 id="security">7. Security Considerations</h2>
<p><i>This section is non-normative.</i></p>
+ <div class="issue">
+<div class="issue-title"><span>Issue 3</span></div>
+<p class=""><a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=22909">Bug 22909</a> - Needs non-normative Security Considerations section.</p>
+</div>
<p><em>TODO: the task force has agreed that a security considerations section needs to be added but not what the contents should be. See <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=22909">Bug 22909</a></em></p>
<h2 id="privacy">8. Privacy Considerations</h2>
<p><i>This section is non-normative.</i></p>
+ <div class="issue">
+<div class="issue-title"><span>Issue 4</span></div>
+<p class=""><a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=22910">Bug 22910</a> - Needs non-normative Privacy Consideration section.</p>
+</div>
+
<h3 id="privacy-fingerprinting">8.1. Fingerprinting</h3>
<p>Malicious applications may be able to fingerprint users or user agents by detecting or enumerating the list of key systems that are supported.</p>
@@ -1128,7 +1132,7 @@
<h3 id="iso">9.2 ISO Base Media File Format</h3>
<div class="nonnormative">
- <p class="issue">Note: There is an open issue about how initialization data should be extracted from ISO BMFF content. See <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=17673">Bug 17673</a>.</p>
+ <p class="issue"><div class="issue-title"><span>Issue 5</span></div>Note: There is an open issue about how initialization data should be extracted from ISO BMFF content. See <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=17673">Bug 17673</a>.</p>
<p>This section defines the stream format and initialization data for ISO Base media File Format (ISOBMFF) content.</p>
<h4 id="iso-stream-format">9.2.1 Stream format</h4>
--- a/encrypted-media/encrypted-media.xml Tue Sep 17 08:31:22 2013 -0700
+++ b/encrypted-media/encrypted-media.xml Tue Sep 17 09:11:48 2013 -0700
@@ -114,7 +114,7 @@
replaced or obsoleted by other documents at any time. It is inappropriate to cite this document as other than work in progress.
</p>
<p class="non-normative">Note: It is an open issue whether and how the spec should do more to encourage/ensure CDM-level interop. See <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=20944">Bug 20944</a>.</p>
- <p class="non-normative">Note: It is an open issue whether and how the spec should provide privacy guidance for CDM implementations. See <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=20965">Bug 20965</a>.</p>
+ <p class="non-normative">Note: This specification contains sections for describing security and privacy considerations. These sections are not final and are tracked in <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=22909">Bug 22909</a> and <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=22910">Bug 22910</a>.</p>
<p>
This document was produced by a group operating under the <a href="http://www.w3.org/Consortium/Patent-Policy-20040205/">5 February 2004 W3C Patent Policy</a>.
W3C maintains a <a href="http://www.w3.org/2004/01/pp-impl/40318/status" rel="disclosure">public list of any patent disclosures</a> made in connection with
@@ -1004,16 +1004,17 @@
}</pre>
</div>
- <div class="issue"><div class="issue-title"><span>Issue 3</span></div><p class=""><a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=20965">Bug 20965</a> - EME results in a loss of control over security and privacy.</p></div>
-
<h2 id="security">7. Security Considerations</h2>
<non-normative-section/>
+ <div class="issue"><div class="issue-title"><span>Issue 3</span></div><p class=""><a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=22909">Bug 22909</a> - Needs non-normative Security Considerations section.</p></div>
<p><em>TODO: the task force has agreed that a security considerations section needs to be added but not what the contents should be. See <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=22909">Bug 22909</a></em></p>
<h2 id="privacy">8. Privacy Considerations</h2>
<non-normative-section/>
+ <div class="issue"><div class="issue-title"><span>Issue 4</span></div><p class=""><a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=22910">Bug 22910</a> - Needs non-normative Privacy Consideration section.</p></div>
+
<h3 id="privacy-fingerprinting">8.1. Fingerprinting</h3>
<p>Malicious applications may be able to fingerprint users or user agents by detecting or enumerating the list of key systems that are supported.</p>
@@ -1065,7 +1066,7 @@
<h3 id="iso">9.2 ISO Base Media File Format</h3>
<div class="nonnormative">
- <p class="issue">Note: There is an open issue about how initialization data should be extracted from ISO BMFF content. See <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=17673">Bug 17673</a>.</p>
+ <div class="issue"><div class="issue-title"><span>Issue 5</span></div>Note: There is an open issue about how initialization data should be extracted from ISO BMFF content. See <a href="https://www.w3.org/Bugs/Public/show_bug.cgi?id=17673">Bug 17673</a>.</div>
<p>This section defines the stream format and initialization data for ISO Base media File Format (ISOBMFF) content.</p>
<h4 id="iso-stream-format">9.2.1 Stream format</h4>