Re: Last Call: <draft-nottingham-safe-hint-05.txt> (The "safe" HTTP Preference) to Proposed Standard

Yoav Nir <ynir.ietf@gmail.com> Sat, 15 November 2014 18:34 UTC

Return-Path: <ynir.ietf@gmail.com>
X-Original-To: ietf@ietfa.amsl.com
Delivered-To: ietf@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EBB151A9133 for <ietf@ietfa.amsl.com>; Sat, 15 Nov 2014 10:34:55 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level:
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id j82CU2v93pqc for <ietf@ietfa.amsl.com>; Sat, 15 Nov 2014 10:34:53 -0800 (PST)
Received: from mail-qa0-x229.google.com (mail-qa0-x229.google.com [IPv6:2607:f8b0:400d:c00::229]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 576281A1B1D for <ietf@ietf.org>; Sat, 15 Nov 2014 10:34:53 -0800 (PST)
Received: by mail-qa0-f41.google.com with SMTP id f12so558618qad.0 for <ietf@ietf.org>; Sat, 15 Nov 2014 10:34:52 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=content-type:mime-version:subject:from:in-reply-to:date:cc :message-id:references:to; bh=bPZDpkFf6aJdAo2iAg8FVFbG9pdWJ0wzGWrGhd/MoNU=; b=yzIGYGnk+YBPcnuWl7A/f2DAxZGvdz7hVHXiU0Gh7AQKoqziuLASLWdPECed6IlJVj KZky5F9FBH/UFlYzSSdBhq6a1xZi9Lkyek2+YoejEgdivo/YbauXl4uUVug/8k9rx7Il 74jQ9KLmvxqbIWQqDkaQbek1tNy650uPArZ9ectzHKIFzS24+fX0y+XIuI/n+hLJKDje rnAANex3VC+iUZbuHjq0dFNI0O5gokwyhPiJ18+maUn/C1VDnWpJJYjvScLQ2E380a1V eWbaJ6aduuI70VkllLH/N93Fc+NOGlBuQobVX7bNJ8PMqS16cKhcEI4oodYMM1VEduv/ 6FjA==
X-Received: by 10.140.97.139 with SMTP id m11mr7473739qge.46.1416076492611; Sat, 15 Nov 2014 10:34:52 -0800 (PST)
Received: from [10.74.1.216] ([38.107.128.6]) by mx.google.com with ESMTPSA id h10sm5175100qge.16.2014.11.15.10.34.50 for <multiple recipients> (version=TLSv1 cipher=ECDHE-RSA-RC4-SHA bits=128/128); Sat, 15 Nov 2014 10:34:51 -0800 (PST)
Content-Type: multipart/alternative; boundary="Apple-Mail=_2057582D-AEA2-4817-B95B-C495D1748054"
Mime-Version: 1.0 (Mac OS X Mail 8.0 \(1990.1\))
Subject: Re: Last Call: <draft-nottingham-safe-hint-05.txt> (The "safe" HTTP Preference) to Proposed Standard
From: Yoav Nir <ynir.ietf@gmail.com>
In-Reply-To: <1416052605.74534.YahooMailIosMobile@web28902.mail.ir2.yahoo.com>
Date: Sat, 15 Nov 2014 08:34:49 -1000
Message-Id: <91E3D29C-7AFC-4BEF-ABDC-021D7D1129CD@gmail.com>
References: <1416052605.74534.YahooMailIosMobile@web28902.mail.ir2.yahoo.com>
To: Lloyd Wood <lloyd.wood@yahoo.co.uk>
X-Mailer: Apple Mail (2.1990.1)
Archived-At: http://mailarchive.ietf.org/arch/msg/ietf/riCvQuFSp5UUlk5uzvgy25P26DY
Cc: "draft-nottingham-safe-hint@tools.ietf.org" <draft-nottingham-safe-hint@tools.ietf.org>, "ietf@ietf.org" <ietf@ietf.org>
X-BeenThere: ietf@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: IETF-Discussion <ietf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ietf>, <mailto:ietf-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ietf/>
List-Post: <mailto:ietf@ietf.org>
List-Help: <mailto:ietf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 15 Nov 2014 18:34:56 -0000

Hi, Lloyd

That is one possible outcome: all decent people have “safe” set.

Another, IMO more likely possible outcome is that servers serve content that is so bland with “safe” set, that nobody sets it, but some people feel like they’ve done something good by setting it for their children.

Imagine Wikipedia with nothing controversial: nothing about abortions, religions, genetics, evolution…

Yoav

> On Nov 15, 2014, at 1:56 AM, Lloyd Wood <lloyd.wood@yahoo.co.uk> wrote:
> 
> Safe becomes a default setting because if you don't set it, you will be investigated for terrorist thoughts. You're advertising thoughtcrimes by not setting safe.
> 
> this safe proposal really hasn't been thought through.
> 
> 
> 
> 
> 
> Sent from Yahoo7 Mail for iPhone <https://overview.mail.yahoo.com/?.src=iOS>
> 
> At 15 Nov 2014 20:26:04, Eliot Lear<'lear@cisco.com <mailto:lear@cisco.com>'> wrote:
> Hi Joe,
> 
> On 11/13/14, 7:19 AM, Joseph Lorenzo Hall wrote:
> >
> > Hi, mnot has already heard the following concerns from us at CDT about
> > this spec, but we want to make sure that these are part of the IETF
> > last call comment record.
> >
> > * The "Safe" preference is not only a preference but a signal. It
> > signals user vulnerability; when activated, the header would signal
> > a user's potentially vulnerable status not only to site operators
> > who intend to reply in good faith, but to those that will operate in
> > bad faith and also to every intermediary on-path that could read the
> > preference request.
> 
> 
> While it could be the case that a user is vulnerable (a term that is a
> bit vague), it is also the case that many other users might choose to
> not want to receive content that is considered in some way "unsafe". 
> One could even imagine "Safe" becoming a default setting.
> 
> Eliot
>