[wp-trac] [WordPress Trac] #16778: wordpress is leaking user/blog information during wp_version_check()

WordPress Trac noreply at wordpress.org
Fri Dec 2 12:05:13 UTC 2016


#16778: wordpress is leaking user/blog information during wp_version_check()
----------------------------+----------------------
 Reporter:  investici       |       Owner:
     Type:  enhancement     |      Status:  closed
 Priority:  normal          |   Milestone:
Component:  Administration  |     Version:
 Severity:  minor           |  Resolution:  invalid
 Keywords:  has-patch       |     Focuses:
----------------------------+----------------------

Comment (by TJNowell):

 This strikes me as something that would be trivially fixed by adding a
 sentence to wp-admin/about.php

 I understand that adding checkboxes and steps is something people don't
 want to add, and I agree, the only suitable place for such a UI is during
 install and on update.

 Stating what information gets sent to .org and why should only take a
 short paragraph of text at the bottom of the about page. If we can add an
 entire page talking about Freedoms I think we can write a short privacy
 statement.

 Here's a suggestion:

 > Note: WordPress may send statistics to WordPress.org when requesting
 updates. This is to help plan and improve future updates.

 With perhaps a "For more information, click here" that leads to a .org
 page

--
Ticket URL: <https://core.trac.wordpress.org/ticket/16778#comment:42>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list