Page MenuHomePhabricator

Nonexistent change in custom policy logged when mentioning a security task
Closed, DuplicatePublic

Description

When I added T75781#787853, the following appeared on T73167 (a task with the "Security" field set to "Security or Sensitive Bug"):

PleaseStand mentioned this in T75781: Cannot view Bugzilla migrated private/security tasks I am author/reporter of.Via Web · Wed, Nov 26, 12:19 PM
Restricted Application changed the visibility of this Task from "Custom Policy" to "Custom Policy". · View Herald TranscriptVia Herald · Wed, Nov 26, 12:19 PM
Restricted Application changed the edit policy of this Task from "Custom Policy" to "Custom Policy". · View Herald Transcript

The old and new custom policies are exactly the same. Same issue as T479?

Related Objects

Event Timeline

PleaseStand raised the priority of this task from to Needs Triage.
PleaseStand updated the task description. (Show Details)
PleaseStand added a project: Phabricator.
PleaseStand changed Security from none to None.
PleaseStand subscribed.

Sounds like the same problem as T479, yes, just with different words.

According to https://www.mediawiki.org/wiki/Phabricator/Security#Proposed_Updates_to_Process we are going to get rid of Herald for handling private tasks, and this might solve this problem as well.

Change 179405 had a related patch set uploaded (by Legoktm):
Huge refactor of security policy enforcer stuff.

https://gerrit.wikimedia.org/r/179405

Patch-For-Review

mmodell raised the priority of this task from Low to High.Dec 12 2014, 6:43 AM
mmodell mentioned this in Unknown Object (Diffusion Commit).Apr 8 2015, 4:33 PM