[cap-talk] Reinterpreting POLA - "Authority Must Not Exceed Trust"

ihab.awad at gmail.com ihab.awad at gmail.com
Mon Sep 17 18:37:22 EDT 2007


On 9/17/07, James A. Donald <jamesd at echeque.com> wrote:
> ihab.awad at gmail.com wrote:
>  > The fact of under-informed stakeholders should not be
>  > an impediment to thinking about how *better*-informed
>  > stakeholders might reason
>
> The end result of your line of thinking is chmod, and
> not only chmod, but chmod with even more options.

Well, I think I am pretty much satisfied with Ping's framework at this
point, but I would still be interested to know how my thinking leads
to chmod. :) I don't see the connection.

Given that there is a framework for capturing end-user decisions, the
question is, what can we do to advise end-users in making their
decisions, or perhaps provide a semi-automated (e.g., social network
based) way to make some of the more common decisions for them?

Ping's point, as I understand it, is that no such thing is needed. The
user should always be able to reason through the worst-case
ramifications of the abilities they have given to each actor and
decide for themselves. That seems reasonable enough, though I need to
think about the matter some more.

> Death to chmod!

That I agree with.

Ihab

-- 
Ihab A.B. Awad, Palo Alto, CA


More information about the cap-talk mailing list