https://bugs.kde.org/show_bug.cgi?id=505177

--- Comment #2 from Roke Julian Lockhart Beedell 
<4wy78...@rokejulianlockhart.addy.io> ---
(In reply to Ben Cooksley from comment #1)

Some bugs aren't security bugs, but do include material (like personal
information) that shouldn't be publicly available. Being able to share such
documentation, when it's integral to bug reproduction, with the relevant
developers would be very useful, since there's a lightyear of trust difference
between those in the aforementioned teams versus merely the general public. As
it is, this has to be shared via e-mail instead.

In an example cited, I needed to share a document with an Okular developer. It
wasn't a security bug: just a very reproducible crash that prevented me filling
the document with Okular. However, due to the nature of the document (it
involved personal information), I couldn't just share it publicly.

Likewise, say that visiting a pornography site caused a crash in Falkon: I
would imagine that the user wouldn't want to disclose this in Dr Konqi's GUI
unless they knew it would be marked as private. I've had that happen once to
me, using Mozilla's Fenix for AOSP. It was embarrassing enough reporting it
confidentially! 😅

-- 
You are receiving this mail because:
You are watching all bug changes.

Reply via email to