[secdir] [new-work] Start of refinement for a draft Web Application Security Working Group charter; current charter extended

Xueyuan Jia <xueyuan=40w3.org@dmarc.ietf.org> Fri, 07 August 2026 10:06 UTC

Return-Path: <forwardingalgorithm@ietf.org>
X-Original-To: secdir@mail2.ietf.org
Delivered-To: secdir@mail2.ietf.org
Received: from mail2.ietf.org (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 7FBBD12545FEE for <secdir@mail2.ietf.org>; Fri, 7 Aug 2026 03:06:36 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1786097196; bh=jZOXkG5nRqcU8hwtwLy0DnXSWshBqLAkozcwptphyqk=; h=Date:To:Subject:List-Id:List-Archive:List-Help:List-Owner: List-Post:List-Subscribe:List-Unsubscribe:From; b=VjEzD8cKoG942sByD0LdDXySy58xclp+lEiYdJOGfajjU08O+sdh+Rv8US4d6T2SR k9up08wgDbTDuWRzPit0oGtYosfbzNiWyDCn20grbssptoPVuRXyY7y921VLNlof6Z Hua5hahcrFf4+EaDLqXVMM94QdF/SMcN9S3GoyF4=
Received: from mail2.ietf.org (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 7A87C12545FED for <secdir@ietf.org>; Fri, 7 Aug 2026 03:06:36 -0700 (PDT)
X-Original-To: new-work@mail2.ietf.org
Delivered-To: new-work@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id BBB0712545F66 for <new-work@mail2.ietf.org>; Fri, 7 Aug 2026 03:06:32 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1786097192; bh=U98axpJucu5ZEVnlnqSC9eAUdaqgyLrX/o+37iA6Xjg=; h=Date:To:From:Subject; b=RbZh8NandChte4MC5D/IZv0ewHOx9K27o74hhtc7cAn4YC8rI9OokYvB2lhBjrA4x E8ymjSzaagYbayCregY9gm1UNsUvIhVdOnjJwbt+pWHdcxIGJ/4KNzVdWrSqVqnqo7 PaG6szpdMs4wBQOtMBMPDK/P/onWVJTfVrN5SVgc=
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -3.4
X-Spam-Level:
X-Spam-Status: No, score=-3.4 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HK_RANDOM_ENVFROM=0.001, HK_RANDOM_FROM=0.999, RCVD_IN_DNSWL_MED=-2.3, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=w3.org
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id D9hVHruCuJ32 for <new-work@mail2.ietf.org>; Fri, 7 Aug 2026 03:06:32 -0700 (PDT)
Received: from anthe.w3.org (anthe.w3.org [IPv6:2600:1f18:7d7a:2700:318c:b74a:bdca:4a0]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange ECDHE (P-256) server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 4AA5212545F61 for <new-work@ietf.org>; Fri, 7 Aug 2026 03:06:32 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=w3.org; s=s1; h=Content-Type:Subject:From:To:MIME-Version:Date:Message-ID:Cc:Reply-To :In-Reply-To:References; bh=kJ8NM4y2O3CEHWcBQXOaiO4sWH9wZgij1J1N/JMOlxQ=; t=1786097192; x=1786961192; b=quKxbEwRRpIZUCasVgwKCiKfr1u3RurlvW1Ak4hlTzkydM3 opsSq3UgUatd9RAhpqtS6FboNrGA9NbRpsTiivSKu3ioCu1kmiozvkpves5GgwvyuavJa4PH44dqj 2Rm0a/BuEBLkcVUrjeSMRmccIe6/QszVjSu16n3+YxpjHPX6Ltp6NAc8pi1gmitOjB/vkm2mz12+M GJ2aady/AVlNB+oLJkN8XyxBAmc/XsYhCORry49U+A1ymuHe3Ejter9GfB51digjQQWNjnPTb8N1r IIo1SVr9LpTBXPS4T0clXWDVFPz0KGmAXJFgKD766nIXD3L9xugeOfwOiG9+Xrtg==;
Received: from ip-10-0-0-242.ec2.internal ([10.0.0.242] helo=spica.w3.internal) by anthe.w3.org with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.98.2) (envelope-from <xueyuan@w3.org>) id 1wsHT8-0000000192D-0g0q for new-work@ietf.org; Fri, 07 Aug 2026 10:06:26 +0000
Received: from localhost ([::1] helo=spica.w3.internal) by spica.w3.internal with esmtp (Exim 4.96) (envelope-from <xueyuan@w3.org>) id 1wsHT8-003zQD-0L for new-work@ietf.org; Fri, 07 Aug 2026 10:06:26 +0000
Received: from [IPV6:2a01:cb0c:150a:d00:5099:3753:6d45:2f22] ([2a01:cb0c:150a:d00:5099:3753:6d45:2f22]) by spica.w3.internal with ESMTPSA id SrzoKyGudWo0gw4ANTRr8w (envelope-from <xueyuan@w3.org>) for <new-work@ietf.org>; Fri, 07 Aug 2026 10:06:25 +0000
Message-ID: <4d2ab240-5b5c-4807-a5d6-cf464c683ab9@w3.org>
Date: Fri, 07 Aug 2026 18:06:24 +0800
MIME-Version: 1.0
User-Agent: Mozilla Thunderbird
Content-Language: en-US
To: new-work@ietf.org
X-MailFrom: xueyuan@w3.org
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-new-work.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
X-Mailman-Version: 3.3.9rc6
Precedence: list
Content-Type: text/plain; charset="utf-8"; format="flowed"
Content-Transfer-Encoding: base64
X-Original-From: Xueyuan Jia <xueyuan@w3.org>
From: Xueyuan Jia <xueyuan=40w3.org@dmarc.ietf.org>
Message-ID-Hash: TOJBWXQZ3VVFW2OUHR5CFKS2S77QAY7T
X-Message-ID-Hash: TOJBWXQZ3VVFW2OUHR5CFKS2S77QAY7T
X-MailFrom: forwardingalgorithm@ietf.org
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-secdir.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
Subject: [secdir] [new-work] Start of refinement for a draft Web Application Security Working Group charter; current charter extended
List-Id: Security Area Directorate <secdir.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/GgVIyU-5SNuLYoa12gzMyZ9NAaw>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Owner: <mailto:secdir-owner@ietf.org>
List-Post: <mailto:secdir@ietf.org>
List-Subscribe: <mailto:secdir-join@ietf.org>
List-Unsubscribe: <mailto:secdir-leave@ietf.org>

Hello,

With this charter review notice, the W3C Team initiates refinement for a 
draft Web Application Security Working Group charter:
  https://w3c.github.io/charter-drafts/2026/charter-wg-webappsec-2026.html

The mission of the Web Application Security Working Group is to develop 
mechanisms and best practices that improve the security of Web applications.

We encourage early discussion of this draft charter in this public forum:
  https://github.com/w3c/strategy/issues/551

W3C Members may discuss on the member-confidential mailing list 
<w3c-ac-forum@w3.org>.

Section 4.2 of the Process Document [1] describes activities during 
charter refinement and the role of the Chartering Facilitator in seeking 
consensus among those who provide feedback on the charter.

The W3C Team estimates that this charter refinement will last until 
approximately 2026-09-04. Check the Strategy issue for notices of extension.

If you have any questions or need further information, please contact 
the Chartering Facilitator, Simone Onofri <simone@w3.org>.

The current charter [2] is hereby extended until 30 October 2026 to 
cover the time needed for the rechartering process.

More information about the group can be found on its home page [3], 
including information about group Chairs, Staff Contact, and 
instructions for joining the group.

This announcement follows sections 4.1 and 4.6 of the Process Document:
  https://www.w3.org/policies/process/20250818/#charter-initiation
  https://www.w3.org/policies/process/20250818/#charter-extension

For Philippe Le Hégaret, VP, Technical Strategy;
Xueyuan Jia, Manager, Member Communications

[1] https://www.w3.org/policies/process/20250818/#charter-development
[2] https://www.w3.org/2024/04/wg-webappsec-charter.html
[3] https://www.w3.org/groups/wg/webappsec/



_______________________________________________
new-work mailing list -- new-work@ietf.org
To unsubscribe send an email to new-work-leave@ietf.org