Granting write access to all DDs to our git area

Jonas Smedegaard dr at jones.dk
Mon Apr 13 09:08:35 UTC 2015


Quoting Fabian Greffrath (2015-04-13 09:30:54)
> Am Freitag, den 10.04.2015, 13:03 -0300 schrieb Felipe Sateler: 
>> I think it would be good: should someone do an NMU or a backport of a 
>> team package, they can commit their contributions directly to git (we 
>> could possibly recommend to a separate branch).
>
> I think we should grant all DDs write access to the repository. After 
> all, we trust them to do NMUs and security uploads, why wouldn't we 
> trust them to commit reasonable changes to the repo?

[I (Jonas) Wrote:]
>> I am in favor of that, but believe others in the team disagree: A 
>> related issue is that of whether we should avoid hierarchy in Alioth 
>> (i.e. all be admins instead of only some of us), and that others 
>> disagreed with me when we last discussed it.
> 
> I think it makes a difference if we blindly trust fellow DDs or 
> probably random newcomers with unchecked identities.

That's a valid point.

We already deal with with non-identified upstreams, so should not 
blindly trust newly added git commits anyway.

How do envision our fellow non-identified team mates might abuse admin 
access to our git repos?  Does the risk of such potential abuse outweigh 
the benefit of the encouragement it provides to treat our colleagues as 
equal peers?


 - Jonas

-- 
 * Jonas Smedegaard - idealist & Internet-arkitekt
 * Tlf.: +45 40843136  Website: http://dr.jones.dk/

 [x] quote me freely  [ ] ask before reusing  [ ] keep private
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: signature
URL: <http://lists.alioth.debian.org/pipermail/pkg-multimedia-maintainers/attachments/20150413/fbdf487e/attachment.sig>


More information about the pkg-multimedia-maintainers mailing list