Movatterモバイル変換


[0]ホーム

URL:


Jump to content
MediaWiki
Search

Product Safety and Integrity

shortcut:PSI
From mediawiki.org
Translate this page
Languages:

As theProduct Safety and Integrity team, we are focused on the security and safety of editors, readers, users with extended rights, and everyone who makes the wikis work.



About us

How we work

[edit]

We:

  • Develop new tools and signals that enable more effective and precise moderation, and to defend against malicious automated traffic
  • Work closely with communities to help prevent abusive and policy-violating activity on our projects
  • Work with our infrastructure teams to respond to threats of scaled abuse
  • Maintain the security of our platform and the accounts of our users

Before the merger in 2025, there were two separate teams:Product Security, andTrust and Safety Product. The latter was formed in 2023 of Anti-Harassment Tools and Trust and Safety Tools. You may still find these names used in the documentation.

Projects

[edit]

[[File:|300px|right]]Our work constitutes most of the objectiveWiki Experiences 4: Safety and Security (WE4; owner:Eric). Code in the brackets is used in the annual plans, and helps identify and report the projects (key results) and smaller pieces of work for each key result (hypotheses).

  • Incident Reporting System (WE4.1; owner:Madalina) – allowing users to report immediate threats of harm to ensure we can learn about such incidents and take prompt action where necessary
  • Anti-abuse signals (WE4.2; owner:Kosta) – allowing both the Foundation and users with extended rights to detect and prevent inauthentic and malicious activity on the wikis
  • Temporary Accounts (WE4.4; owner:Niharika) – improving the privacy and safety of the unregistered editors by shielding their personally identifiable information
  • Account Security (WE4.6; owner:Roan) – enforcing two-factor authentication on user accounts with privileges allowing to take security- or privacy-sensitive actions



People

Team leads

[edit]

Eric Mill

Group Product Manager

Niharika Kohli

Lead Product Manager

Madalina Ana

Senior Product Manager

Olga Kryva

Engineering Manager

vacant

Engineering Manager

Kosta Harlan

Principal Software Engineer

Roan Kattouw

Principal Software Engineer

Scott Bassett

Staff Security Engineer

Thalia Chan

Staff Software Engineer

Katie Coleman

Lead UX Designer

Szymon Grabarczuk

Lead Movement Communications Specialist

Other team members

[edit]

vacant - apply!

Senior Software Engineer

Héctor Arroyo

Software Engineer

William Brown

Senior Software Engineer

Samuel Guebo

Senior Privacy Engineer

Manfredi Martorana

Application Security Engineer

Aranya Prum

Privacy Engineer II

Sam Reed

Senior Security Engineer

Maryum Styles

Application Security Engineer

Marcin Szwarc

Software Engineer

Tran

Staff Software Engineer

People we work with

[edit]

Temi Adeleye

Senior Technical Program Manager

Derrick Jackson

Test Engineer

Claudia Lo

Senior Design Researcher

Madi Moss

Senior Counsel

Martin Urbanec

Steward liaison with the team (volunteer)

Dom Walden

Test Engineer

Morten Warncke-Wang

Staff Data Scientist



Internal documentation

Metrics and instrumentation

[edit]

Decision records

[edit]

CNA Partnership

[edit]

Since 2024, the Wikimedia Foundation isan official partner of the Common Vulnerabilities and Exposures (CVE) program. CVE is an international effort to catalog publicly disclosed cybersecurity vulnerabilities. Thispartnership with the CVE program allows us to instantly publishcommon vulnerabilities and exposures records that are affecting MediaWiki core and extensions, along with any other code the Foundation is a steward of.

CVEs are assigned based on the discretion of the PSI team and publicly announced inthis GitLab repository. To learn more about our Security Issue reporting process please checkout the process. Security issues are also announced quarterly onthe mediawiki-announce email list.

The PSI team has internal security documentation on theSupplemental Release Process.



Connect with us

For product security issues:

  • Security/SOP/Requests For Service
  • For all other questions or if you require assistance in determining your security needs, email security-help@wikimedia.org
  • Tasks that followa recognized flow will be at a minimum discussed by our team during our weekly clinic meeting


The Wikimedia Foundation, Inc is a nonprofit charitable organization dedicated to encouraging the growth, development and distribution of free, multilingual content, and to providing the full content of these wiki-based projects to the public free of charge.

Retrieved from "https://www.mediawiki.org/w/index.php?title=Product_Safety_and_Integrity&oldid=7946690"
Category:

[8]ページ先頭

©2009-2025 Movatter.jp