8000 Monthly Chat Agenda April 2025-04-07 · Issue #4087 · coreruleset/coreruleset · GitHub
[go: up one dir, main page]
More Web Proxy on the site http://driver.im/
Skip to content

Monthly Chat Agenda April 2025-04-07 #4087

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
theseion opened this issue Apr 7, 2025 · 1 comment
Open

Monthly Chat Agenda April 2025-04-07 #4087

theseion opened this issue Apr 7, 2025 · 1 comment

Comments

@theseion
Copy link
Contributor
theseion commented Apr 7, 2025

This is the Agenda for the Monthly CRS Chat.

The chat is going to happen on https://owasp.slack.com in the channel #coreruleset on Monday, April 7th, 2025, at 20:30 CET (CEST during summer in the Northern Hemisphere). That's the 1st Monday of the month. Please note that we have a CRS calendar (maintained by @fzipi).

Archived previous meetings and their decision are here.

What happened in the meantime since the chat last month

Outside development

  • 🚀 The first Open WAF Day is going to happen in OWASP Global AppSec EU 2025 in Barcelona on Wednesday May 28th!

Inside development

Rules

CRS Sandbox

  • 🔧 Sandbox was fixed and now it is running with the latest CRS version.

Security

Plugins

Documentation and Public Relations

Project Administration and Sponsor relationships

  • 💬 We are discussing with two potential sponsors for 2025
  • ✍️ Q1 2025 ended last week: DoD payments for Q1 will be submitted this week

Tools

Testing incl. Seaweed and many future plans

  • No news here.

Containers

  • No news is good news: our test suite is running with the latest container builds and so far no complaints from users

Project discussions and decisions

  • Consider adding support for Ruby as requested in issue #4074
  • Should we add JavaScript methods import and fetch to 941390? PR #4076
    • They are common English words although there is only one known false positive according to ftw quantitative: If you’re looking for a personal recommendation, if you’re willing to import (and perhaps wait around, as they often sell out line has been consistently excellent so far.. There are already other common English words in the rule such as alert, confirm, and prompt.

Rules development, key project numbers

PRs that have been merged since the last meeting

We merged 30 PRs since the last monthly project chat.

Open PRs

Open PRs marked DRAFT or work in progress or needs action

How to get to our slack and join the meeting?

If you are not yet on the OWASP Slack, here is your invite: https://owasp.org/slack/invite .

Everybody is welcome to join our community chat.

@theseion theseion changed the title Meeting agenda April 2025-04-07 Monthly Chat Agenda April 2025-04-07 Apr 7, 2025
@franbuehler
Copy link
Contributor
franbuehler commented Apr 7, 2025

Decisions

  • Adding support for Ruby
    🔵 We'll add support for Ruby. We'll also add support for the top ten in the TIOBE index. @Xhoenix is willing to take the lead on this.
  • Should we add JavaScript methods import and fetch
    🔵 PR was already merged today, no need to discuss it.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants
0