← Back to team overview

ubuntu-bugcontrol team mailing list archive

Re: Bug Control team application

 

On 01/20/2010 03:18 PM, Vishnoo wrote:
Hi,

<snip />
* What sensitive data should you look for in a private Apport crash
report bug before making it public? See Bugs/HowToTriage for more
information.

Apport crash bugs may contain sensitive data like passwords, bank
account numbers, CSS keys, etc.. If it doesnt have any sensitive data it
may be marked as public.


I feel the need to point out again about Core dump files (maybe we should make this clear on the wiki if it isn't already). Bugs with CoreDump.gz should never be made public. If it's an apport bug and the retracer has not looked yet, make private and comment why. If it's not an apport crash bug, delete the CoreDump.gz and triage or request and apport crash report.

Micah



References