12:08:00 scribenick: McCool
12:08:06 topic: Minutes
12:08:29 ml: review of minutes from Feb 8, 2023
12:08:34 https://www.w3.org/2023/02/08-wot-profile-minutes.html
12:09:25 mm: did create the wide review issues
12:09:38 ml: any objections to publishing?
12:09:44 ... none, will publish
12:10:09 topic: Wide Review and Explainer
12:10:13 Ege has joined #wot-profile
12:10:26 present+ Ege_Korkan, Tomoaki_Mizushima
12:10:33 agenda: https://www.w3.org/WoT/IG/wiki/WG_WoT_Profile_WebConf#Profile_-_Feb_22nd.2C_2023
12:11:07 mm: note that I generally set March 20 as deadline for review
12:11:17 ml: suggest a reminder on March 15 or so
12:11:24 ryuichi has joined #wot-profile
12:11:47 -> https://github.com/w3c/wot-profile/issues/358 wot-profile issue 358 - Wide review
12:11:57 mm: suggest adding that to the agenda for the Profile call that week
12:12:08 luca_barbato_ has joined #wot-profile
12:12:32 ml: ok, that will be March 15
12:13:53 mm: also explainer looks ok
12:14:22 https://github.com/w3c/wot-profile/pull/362
12:14:25 ml: I did merge the editorial fix for the explainer - PR 362
12:14:43 mm: ok, I reviewed and was ok with it
12:14:47 topic: PRs
12:14:59 subtopic: PR 365
12:15:03 https://github.com/w3c/wot-profile/pull/365/files
12:15:14 ml: another explainer fix, removing some duplicate text
12:15:24 mm: concur with merging
12:15:28 ml: (merges)
12:16:13 subtopic: PR 364
12:16:29 ml: http security
12:17:36 mm: (explains the discussion during the Security call)
12:18:13 present+ Luca_Barbato
12:18:33 mm: so we discussed this in security and had a set of action items, Luca volunteered to make a PR
12:18:50 ... but there were some feedback from Ben we needed to address
12:19:32 -> https://github.com/w3c/wot-profile/issues/6#issuecomment-1427962430 comments on Issue 6 (Recommended Security) based on the discussion during the Security call on Feb 13
12:20:27 ml: (shows section "5.4 Security" from the diff)
12:20:32 -> https://pr-preview.s3.amazonaws.com/w3c/wot-profile/364/f72b27f...luminem:8b72f9e.html#common-constraints-security diff - 5.4 Security Luca, if you can add necessary change to this PR, we can merge this PR as well 12:25:46 ek: what about Webhook? 12:26:05 ... currently, security is a common restriction. right? 12:26:25 mm: Security TF proposed we move the security portion under the HTTP Core Profile 12:26:31 ... but Ben objected 12:26:36 q? 12:26:36 ... so we're putting it back 12:26:40 ack e 12:26:44 ack e 12:27:32 q+ 12:28:22 conclusion: Luca will make necessary changes to PR 364 so that we can merge the PR 12:28:32 subtopic: PR 334 12:28:45 ml: Sebastian is not here, so skip it 12:28:55 subtopic: PR 330 12:29:24 -> https://github.com/w3c/wot-profile/pull/330 PR 330 - Cloud Events Message Format 12:29:46 q+ 12:29:58 ml: (shows section "11. Cloud Events Message Format") 12:29:59 ack k 12:30:09 q+ 12:30:28 -> https://pr-preview.s3.amazonaws.com/w3c/wot-profile/330/885bfe1...b198791.html#sec-http-webhook-profile-message-format diff - 11. 12:44:34 my comments were not exactly what is scribed: cloudevents is putting metadata in the payload which is redundant in WoT since we have TDs. It mandates putting contentType, resource, cloudevents spec version in the payload which can be all in the TD and not in the payload
12:45:30 also cloudevents is in the incubation phase of cloud native foundation at https://www.cncf.io/projects/ and even if it was in the graduated projects, it is not a standard (and probably will not be) unless Cloud Native Foundation is recognized as SDO by the W3C
12:46:02 kaz: sounds like we all are not on the same page
12:46:11 so we need to specify everything ourselves
12:46:39 ... so would suggest we once go back to what we want to do for what kind of use case using which mechanism
12:47:07 ... then revisit how to describe that within our spec like WoT Profile after that
12:47:18 ack e
12:47:33 I am not objecting webhooks btw
12:48:08 also if we are now discussing about supporting brownfield, we are breaking the entire design of profiles...
12:50:39 mm: from my viewpoint, this is needed for compatibility with existing mechanisms It mandates putting contentType, resource, cloudevents spec version in the payload which can be all in the TD and not in the payload 12:45:30 also cloudevents is in the incubation phase of cloud native foundation at https://www.cncf.io/projects/ and even if it was in the graduated projects, it is not a standard (and probably will not be) unless Cloud Native Foundation is recognized as SDO by the W3C 12:46:02 kaz: sounds like we all are not on the same page 12:46:11 so we need to specify everything ourselves 12:46:39 ... so would suggest we once go back to what we want to do for what kind of use case using which mechanism 12:47:07 ... then revisit how to describe that within our spec like WoT Profile after that 12:47:13 q+ 12:47:18 ack e 12:47:18 Ege, you wanted to react to Ege and to 12:47:21 ack k 12:47:25 q+ Ege 12:47:33 I am not objecting webhooks btw 12:48:08 also if we are now discussing about supporting brownfield, we are breaking the entire design of profiles... 12:50:18 q? 12:50:21 ack m 12:50:39 mm: from my viewpoint, this is needed for compatibility with existing mechanisms 12:51:20 ... 15:27:02 Zakim has left #wot-profile