Skip to content

Conversation

@JustinCappos
Copy link
Member

I'm proposing a patch spec update to make it clearer that a threshold of 0 (or less) is not allowed. See: https://github.com/theupdateframework/go-tuf/security/advisories/GHSA-fphv-w9fq-2525 for more details.

I've also updated people's affiliation and suggested that slack is the best way to contact us.

I'm proposing a patch spec update to make it clearer that a threshold of 0 (or less) is not allowed.  See: GHSA-fphv-w9fq-2525 for more details.

I've also updated people's affiliation and suggested that slack is the best way to contact us.

Signed-off-by: Justin Cappos <[email protected]>
@JustinCappos JustinCappos requested review from a team, joshuagl and mnm678 January 19, 2026 18:01
Copy link
Member

@lukpueh lukpueh left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for the change. Apart from Joshua's affiliation this looks good!

Editor: Marina Moore, NYU
Editor: Lukas Pühringer, NYU
Editor: Trishank Karthik Kuppusamy, Apple
Editor: Joshua Lock, VMware
Copy link
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Suggested change
Editor: Joshua Lock, VMware
Editor: Joshua Lock, Verizon

AFAIK, Joshua switched from VMware to Verizon, so this should already be up to date. cc @joshuagl

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants