Staff group/it
Questa pagina è obsoleta, ma se fosse aggiornata potrebbe ancora essere utile. Per favore correggi, estendi o revisiona il testo affinché torni ad essere attuale. |
Il gruppo Staff è assegnato ad alcuni dipendenti pagati della Wikimedia Foundation e ai loro delegati. Questo gruppo ha un accesso speciale principalmente per problemi tecnici o legali.
Sfondo
La Wikimedia Foundation valuta costantemente chi è un membro del gruppo di utenti dello staff al fine di ridurre al minimo la proliferazione di questo strumento molto specializzato. L'appartenenza al gruppo dello staff viene costantemente rivalutata, in particolare alla luce della disponibilità di uno strumento più limitato che si adatterà alle esigenze di un membro dello staff, se ci si aspetta che qualcuno non abbia bisogno dei diritti di staff per un periodo di tempo, o se c'è qualcosa che cambia durante una valutazione del rischio. Queste rivalutazioni fanno parte di buone pratiche di sicurezza.
Previously, who did and did not have staff rights was relatively arbitrary, based upon asking the staff member who was in charge of these rights. The process has been subsequently formalized to protect against abuse or misuse of staff rights. In order to receive staff rights, it requires second level sign-off (meaning that for a new employee in a department, director level signoff is required and for a new manager, C-level signoff is required), a formal written use-case that is kept on file and routinely reviewed to determine whether the use-case is still met by assignment of staff rights, a brief training session explaining their appropriate and inappropriate use, and an acknowledgement (in writing) of the rights and responsibilities that come with staff rights.
Previously, there were few protections against abuse. Today, there are a number of checks and balances built into the system. On the English Wikipedia, for instance, the Arbitration Committee reviews all logged actions and discusses questionable actions with Jan (as the WMF employee responsible for approving rights assignments) to ensure they are within policy. On other wikis where there is no comparable subcommittee, the Trust and Safety (T&S) team audits and reviews employee actions. This has resulted in employee disciplinary action on occasion. These are not toothless protections.
Assignment
Staff rights are managed by the Global Head of Trust and Safety and the second-level Wikimedia Foundation manager of the person requesting staff rights.
Wikimedia stewards and staff will add or remove permissions (former link) from the staff global user group and they also add or remove user accounts from the staff global user group based on the requests of the Global Head of Trust and Safety or their designee. There is no requirement that community consensus be demonstrated or that the above requirements (including sign-offs) are proved.
Rationale and responsibility of advanced permissions assignment for Wikimedia Foundation staff are currently recorded in a locked Google spreadsheet. A mirror of that page can be found at WMF Advanced Permissions.
Permessi
La tabella seguente elenca i diritti utente disponibili nel gruppo di utenti staff e una spiegazione del motivo per cui questi diritti sono necessari per tale gruppo.
Diritti degli utenti | Scopo |
---|---|
abusefilter-access-protected-vars | ... |
abusefilter-hidden-log | ... |
abusefilter-hide-log | ... |
abusefilter-log-detail | ... |
abusefilter-log-private | ... |
abusefilter-modify | ... |
abusefilter-modify-global | ... |
abusefilter-modify-restricted | ... |
abusefilter-privatedetails | ... |
abusefilter-privatedetails-log | ... |
abusefilter-protected-vars-log | ... |
abusefilter-revert | ... |
abusefilter-view | ... |
abusefilter-view-private | ... |
apihighlimits | phab:T293431 |
autoconfirmed | ... |
autopatrol | ... |
bigdelete | At times, the T&S or technical team need the ability to delete pages with a high number of revisions for technical reasons, or for legal compliance reasons. |
block | ... |
blockemail | ... |
browsearchive | ... |
centralauth-merge | ... |
centralauth-unmerge | ... |
centralnotice-admin | ... |
checkuser | The T&S team uses this right for legal compliance (subpoena, etc.) and safety reasons (investigations of threats) |
checkuser-log | The T&S team uses this right for legal compliance (subpoena, etc.) and safety reasons (investigations of threats) |
checkuser-temporary-account-log | ... |
checkuser-temporary-account-no-preference | T367170 |
delete | The T&S team uses this right for legal compliance and copyright purposes. |
deletedhistory | The T&S team uses this right for legal compliance and copyright purposes. |
deletedtext | The T&S team uses this right for legal compliance and copyright purposes. |
deletelogentry | The T&S team uses this right for legal compliance purposes. |
deleterevision | The T&S team uses this right for legal compliance and copyright purposes. |
edit | ... |
editcontentmodel | ... |
editinterface | The T&S team uses this right for legal compliance and copyright purposes (i.e., to change the copyright notices, etc.). Other staff members use it to support the development of other projects and technical initiatives. |
editprotected | ... |
editsemiprotected | ... |
editsitecss | ... |
editsitejs | ... |
editsitejson | ... |
editusercss | This was done for a couple of reasons. First, we have had times when we saw a user insert some code in their own user.js and user.css files that really shouldn't be there, and then propagate that code out to the wikis by adding a transclusion from their own user files to, for instance, Mediawiki:Common.js of a smaller wiki, and thereby add google tracking code, for instance. This allows staff to easily (and in a logged fashion) remove such code. Second, in order to include a stylesheet for those users who hold staff rights which colors red the interface buttons for things that they really shouldn't touch without a REALLY good reason (i.e., the execute checkuser button). |
edituserjs | |
edituserjson | |
extendedconfirmed | ... |
flow-create-board | ... |
flow-delete | ... |
flow-edit-post | ... |
flow-hide | ... |
flow-suppress | ... |
gadgets-definition-edit | ... |
gadgets-edit | ... |
globalblock-exempt | ... |
globalblock-whitelist | ... |
hideuser | ... |
import | ... |
importupload | ... |
ipblock-exempt | ... |
ipinfo | ... |
ipinfo-view-full | ... |
ipinfo-view-log | ... |
managementors | ... |
move | ... |
move-rootuserpages | ... |
move-subpages | ... |
movefile | ... |
movestable | ... |
mwoauthmanageconsumer | ... |
mwoauthmanagemygrants | ... |
mwoauthproposeconsumer | ... |
mwoauthsuppress | ... |
mwoauthupdateownconsumer | ... |
mwoauthviewprivate | ... |
mwoauthviewsuppressed | ... |
noratelimit | ... |
nuke | ... |
oathauth-disable-for-user | ... |
oathauth-enable | ... |
override-antispoof | ... |
patrolmarks | ... |
protect | ... |
purge | ... |
reupload | ... |
reupload-shared | ... |
review | ... |
rollback | ... |
sendemail | ... |
setmentor | ... |
skipcaptcha | ... |
stablesettings | ... |
suppressionlog | ... |
suppressredirect | ... |
suppressrevision | ... |
tboverride | ... |
tboverride-account | ... |
templateeditor | ... |
transcode-reset | ... |
transcode-status | ... |
unblockself | ... |
undelete | ... |
unwatchedpages | ... |
upload | ... |
upload_by_url | ... |