Netlock inclusion in MRSP

201 views
Skip to first unread message

Mike Shaver

unread,
Oct 2, 2026, 6:35:11 PM (7 days ago) Oct 2
to dev-secur...@mozilla.org
A number of community members have raised concerns about Netlock’s responses to multiple incidents over the past while. I believe that CRP was also disapproving of their conduct, given their response.

Could we get a statement from Mozilla about how they currently view Netlock’s incident responses, and what they believe an appropriate response from MRSP would be?

I think the community would be quite interested in understanding Mozilla’s position wrt Netlock’s compliance and responses.

Thank you,

Mike

Ben Wilson

unread,
Oct 5, 2026, 12:25:56 PM (4 days ago) Oct 5
to Mike Shaver, dev-secur...@mozilla.org

Hi Mike,

Thanks for raising this. We’re considering the concerns you’ve identified as part of our assessment of Netlock’s continued inclusion in the Mozilla Root Program and will follow up publicly.

Ben



--
You received this message because you are subscribed to the Google Groups "dev-secur...@mozilla.org" group.
To unsubscribe from this group and stop receiving emails from it, send an email to dev-security-po...@mozilla.org.
To view this discussion visit https://groups.google.com/a/mozilla.org/d/msgid/dev-security-policy/CADQzZqtZYw6KJb%3DaxRtr1NE97omzV%2BG9TiUwa4BVyFg1MbaCbQ%40mail.gmail.com.
Reply all
Reply to author
Forward
0 new messages