Skip to content

Commit

Permalink
sharing: Unicode is a proper noun
Browse files Browse the repository at this point in the history
  • Loading branch information
neilj committed Apr 12, 2024
1 parent 07808f0 commit d65d939
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion rfc/src/sharing.xml
Expand Up @@ -396,7 +396,7 @@ for this principal that the user has access to, or null if none.</t></li>

<section anchor="spoofing"><name>Spoofing</name>
<t>Allowing users to edit their own Principal's name (and, to a lesser extent, email, description, or type) could allow a user to change their Principal to look like another user in the system, potentially tricking others into sharing private data with them. Servers may choose to forbid this, and <bcp14>SHOULD</bcp14> keep logs of such changes to provide an audit trail.</t>
<t>Note that simply forbidding the use of a name already in the system is insufficient protection, as a malicious user could still change their name to something easily confused with the existing name by using trivial misspellings or visually similar unicode characters.</t>
<t>Note that simply forbidding the use of a name already in the system is insufficient protection, as a malicious user could still change their name to something easily confused with the existing name by using trivial misspellings or visually similar Unicode characters.</t>
</section>

<section anchor="unnoticed-sharing"><name>Unnoticed sharing</name>
Expand Down

0 comments on commit d65d939

Please sign in to comment.