The following discussion is closed. Please do not modify it. Subsequent comments should be made on the appropriate discussion page. No further changes should be made to this discussion.
Hi all, this policy currently has no mention on whether non-admins can request this right. My personal opinion is that it is an admin-level right that has been detached from admin, not to allow non-admin users to use it like rollbacker and patroller have been, but instead to prevent all admins from having access to it due to security risks. I see two options forward here:
Option Y: Specify in our policy that only admins can request the interface-admin right by adding the following line:
Only existing administrators can request the interface administrator right.
Option Z: Specify in our policy that any trusted user can request the interface-admin right by adding the following line:
Any user can request the interface administrator right, as long as they are trusted, have 2FA enabled and have a specified task.
I feel both options should also allow for an extra addition regarding abuse, due to the high-risk nature of these rights (like what is done in WP:FLOOD): Those who abuse interface admin rights may be sanctioned, through removal of rights or blocks.
I forgot one more thing: there should be a mention of where to ask for these permissions - I think it's AN since there is no dedicated part on WP:RfP (but I'm not sure). Thank you. BZPN (talk) 12:25, 31 October 2024 (UTC)Reply
Yeah, since it's task specific it can be brought to AN. If these requests become too frequent a section can be created in RfP later I guess. BRP ever12:27, 31 October 2024 (UTC)Reply
SupportOption Y with a modification to include mandatory 2FA. This is mandated by the WMF. This is a sensitive user right, almost close to the levels that I'd say require signing the NDA. If you can be trusted with the mop, then you should be able to handle this.— *Fehufangą ♮ ✉ Talk page13:44, 31 October 2024 (UTC)Reply
@Fehufanga I can't see how Non disclosure agreement would work in this situation. I think this is purely technical right. I see the danger, but also see that our current admin team will find it hard to maintain all the tools, maybe we should consider a way for those trusted with technical knowledge to be able to edit .js, .css ad json pages. Maybe just by limiting it to extreme situation or could also be through community consensus. BRP ever14:23, 3 November 2024 (UTC)Reply
@BRPever I did not say that you need to sign the NDA to be an IA, I'm saying that the danger and sensitivity of this user right is nearly identical to the user rights that require signing the NDA. There are many ways to do this using JS but beans, beans, beans. — *Fehufangą ♮ ✉ Talk page14:28, 3 November 2024 (UTC)Reply
Support for Option Y. Giving it to anyone could potentially unleash hell. It's a delicate right to possess - I hold it myself as an admin on Vikidia. One mistake can mess up an entire page, and it would be better to restrict it to existing administrators only. It's almost like saying "anyone can edit the front page". Altering the interface and how it responds is not something non-admins should have access to. DaneGeld (talk) 18:13, 31 October 2024 (UTC)Reply
@DaneGeld, these are very shallow conclusions. These permissions are granted by bureaucrats who should assess the situation well before granting a user permission. It is probably obvious that an untrusted user will not receive these permissions. In addition, these permissions are only granted temporarily to fulfill a specific purpose, which also minimizes the risk of causing damage in other spaces. BZPN (talk) 18:20, 31 October 2024 (UTC)Reply
@User:BZPN - I am aware that this permission is granted by bureaucrats - but if it's only going to be temporary for a specific purpose, what's the point of giving it to any "trusted" user, when the admins are already trusted? Option Y stays on the table for me. Giving it to lots of people, when only a select few need it at all, is just going to cause a headache. DaneGeld (talk) 18:27, 31 October 2024 (UTC)Reply
Support Option Y with condition of mandatory 2FA, and for non-admins following the process similar to WP:RFA. Sort of like how they do in metawiki. I feel like we are going to need hand with maintenance and keeping that window open is a good idea.--BRP ever14:55, 3 November 2024 (UTC)Reply
The above discussion is preserved as an archive. Please do not change it. Subsequent comments should be made on the appropriate discussion page, such as the current discussion page. No more changes should be made to this discussion.
Content Disclaimer
Informasi ini disarikan dari Wikipedia dan disajikan kembali untuk tujuan edukasi. Konten tersedia di bawah lisensi CC BY-SA 3.0. Kami tidak bertanggung jawab atas ketidakakuratan data yang bersumber dari kontribusi publik tersebut.
The information displayed on this website is sourced in part or in whole from Wikipedia and has been adapted for the purpose of restating it. We strive to provide accurate and relevant information, however:
There is no guarantee of absolute accuracy. Wikipedia is an open, collaborative project that can be edited by anyone, so information is subject to change.
It is not intended to constitute professional advice. The content displayed is for informational and educational purposes only. For important decisions (e.g., medical, legal, or financial), please consult a professional.
Content copyright. Wikipedia is licensed under the Creative Commons Attribution-ShareAlike License (CC BY-SA). This means that content may be reused with appropriate attribution and shared under a similar license.
Responsible use. Any risk arising from the use of information from this website is entirely the responsibility of the user.