Would it be useful to do a broader privacy review of ActivityPub and Mastodon-federation?
/cc @cwebber @sandro
http://lists.w3.org/Archives/Public/public-privacy/2017JulSep/0018.html
@sandro @npd BTW one thing that has not really possible to get normatively in the spec is the authentication section of the spec; two non-normative paths were laid out: OAuth 2.0 w/ bearer tokens, or a Linked Data Signatures + HTTP Signatures route. Mastodon has gone the latter, which I suspect will bring the rest of the network in that direction.
@npd @sandro That's non-normative, and will remain so in the spec, but maybe useful information to know.