Josh Grossman
Josh Grossman
OCB seems to have licensing issues. For the others, I defer to Daniel :)
ok cool so @danielcuthbert @unprovable any comments on this?
I am going to tag this as both v6 and v8. Whether this gets added or not, I think we need to add it to V8 and not V6.
I would agree with merging V6.1.1, V6.1.2 and V6.1.3 to V8.3.7 and cover with documentation requirements as well.
Ok, [6.1.3](https://github.com/OWASP/ASVS/blob/master/5.0/en/0x14-V6-Cryptography.md#v61-data-classification) talks about "regulated financial data" but I am not sure that relates to a specific regulatory standard so as far as I am concerned it is a duplicate...
Can you suggest requirements that you think are not explicitly covered by existing requirements. For example, I think we already have a requirement that all communications should be via TLS...
hi @ImanSharaf any thoughts on this?
So can you suggest some specific requirements @ImanSharaf ?
Yeah let's see the WebRTC requirements first and then decide if we want a dedicated section or not.
@ImanSharaf do you have suggested requirements for this?