Re: Bug#1137424: lintian/dev-ref: false positive embedded-javascript-library

Soren Stoutner <[email protected]> Sat, 23 May 2026 12:59:47 -0700
Newsgroups gmane.linux.debian.devel.policy
Organization Debian
Message-ID <2350158.iZASKD2KPV@soren-desktop>
--nextPart2038563.PYKUYFuaPT
Content-Transfer-Encoding: quoted-printable
Content-Type: text/plain; charset="utf-8"; protected-headers="v1"
From: Soren Stoutner <[email protected]>
To: [email protected], [email protected]
Date: Sat, 23 May 2026 12:59:47 -0700
Message-ID: <2350158.iZASKD2KPV@soren-desktop>
Organization: Debian
In-Reply-To: <[email protected]>
MIME-Version: 1.0

On Saturday, May 23, 2026 12:49:39=E2=80=AFPM Mountain Standard Time Holger=
 Levsen=20
wrote:
> On Sat, May 23, 2026 at 08:28:14PM +0200, Bill Allombert wrote:
> > > 3.) should I override the lintian warning in dev-ref?
> >=20
> > Please don't. Override should be reserved to pathological cases where a
> > package is a policy exception, not to hide lintian false postive.
>=20
> I disagree. (But I also think this is the least interest aspect of this b=
ug
> report.)

When lintian has a false-positive that can be corrected in the logic of the=
=20
lintian check, I usually file a lintian bug report and override the false=20
positive with a link to the bug report while I am waiting for it to be fixe=
d.

When lintian has a false-positive that is not possible for the lintian chec=
k=20
to detect (there are lots of these, for example the tag very-long-line-leng=
th-
in-source-file) then I override the lintian false positive with an explanat=
ion=20
of why it doesn=E2=80=99t apply.  Checks like these are valuable lintian ta=
gs because=20
they help me find problems in the source code, like minified JavaScript.  B=
ut=20
they can also flag files that aren=E2=80=99t problems, and it is important =
to be able=20
to mark those as overridden after they have been manually reviewed.

Note that this isn=E2=80=99t a comment on the best way to handle this situa=
tion, just=20
a note that overriding lintian false-positives is indeed the correct behavi=
or=20
in many cases.

=2D-=20
Soren Stoutner
[email protected]
--nextPart2038563.PYKUYFuaPT
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: This is a digitally signed message part.
Content-Transfer-Encoding: 7Bit

-----BEGIN PGP SIGNATURE-----
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=0Nh1
-----END PGP SIGNATURE-----

--nextPart2038563.PYKUYFuaPT--