[media-types] Re: [IANA #1450625] application/vnd.vi mina.vma registration request

"Murray S. Kucherawy" <[email protected]> Tue, 28 Apr 2026 18:00:53 -0700
Newsgroups gmane.ietf.types
Message-ID <CAL0qLwYZzC0jYk1Z_ny0=ogev457kedyhaHSVHQskkNF9ZTfVw@mail.gmail.com>
On Wed, Apr 22, 2026 at 6:13 PM Amanda Baber via RT <
[email protected]> wrote:

> Name: Sunny Lynn
>
> Email: [email protected]
>
> Media type name: application
>
> Media subtype name: vnd.vimina.vma
>
> Required parameters: N/A
>
> Optional parameters: charset,version


> Encoding considerations: binary
>
> Security considerations:
>

Per RFC 6838, this section needs to make a clear statement about whether
the payload in this media type is executable.

>
> 1. Script Execution
> VMA scripts can control mouse and keyboard input, which may pose
> security risks if scripts from untrusted sources are executed.
>
> 2. Recommended Practices
>
> 2.1. Review scripts before execution
>

What should people be looking for when they're doing this review?


> 2.2. Use sandboxing for untrusted scripts
> 2.3. Limit script permissions when possible
> 2.4. Log all script actions for audit purposes
>
> 3. Dangerous Operations
>
> The following operations should require user confirmation:
> - Sending input to password fields
> - Executing external programs
> - Modifying system settings
>
> Interoperability considerations: N/A


Why is this the right answer?


> Published specification:
> https://github.com/Sunse666/Vimina/blob/main/docs/VMA-Specification.md


This results in a GitHub "Page Not Found" error.


> Applications which use this media: Vimina desktop automation tool
>
> Fragment identifier considerations: N/A
>
> Restrictions on usage: N/A
>
> Provisional registration? (standards tree only): No
>
> Additional information:
>
> 1. Deprecated alias names for this type: N/A
> 2. Magic number(s): N/A
> 3. File extension(s): .vma
> 4. Macintosh file type code: N/A
> 5. Object Identifiers: N/A
>
> General Comments: N/A
>
> Person to contact for further information:
>
> 1. Name: Sunny Lynn
> 2. Email: [email protected]
>
> Intended usage: COMMON
>
> Author/Change controller: Sunny Lynn

_______________________________________________
media-types mailing list -- [email protected]
To unsubscribe send an email to [email protected]