Re: unmaintained packages hidden by team maintenance

Tobias Frost <[email protected]> Fri, 20 Feb 2026 18:58:32 +0100
Newsgroups gmane.linux.debian.devel.project
Message-ID <[email protected]>
I would like to take a step back and frame what I see as the broader
structural aspect of this discussion.

The question is not only whether the Uploaders field should be optional
for team-maintained packages, but whether doing so effectively redefines
MIA's mandate.

If explicit person -> package associations become optional, individual
inactivity within teams would no longer be a project-level concern. MIA
could then no longer operate under its current model, as one of the
structured signals linking individuals to packages would not be
consistently available.  While other heuristics may still exist, they
are not equivalent to an explicit and declared association, and are
operationally much more expensive.

Responsibility for recognizing and handling inactivity would rest
entirely with the teams.

As this thread shows, there are differing interpretations of what "team
responsibility" entails in practice. This suggests the change is not
merely a metadata adjustment, but a shift in expectations about
accountability and recovery.

In practice, many packages - even within established teams - are
effectively driven by one or a few individuals. When responsibility is
purely collective, inactivity can become less visible, particularly in
smaller or less structured teams where attempts to contact the team may
not result in any response.

If the project considers this trade-off acceptable, the resulting
mandate change for MIA should be understood as deliberate. 

I've CC'ed the other MIA team members via the team aliases in case they
want to chime in.

Cheers,
--
tobi
signature.asc (application/pgp-signature, 833 B)
-----BEGIN PGP SIGNATURE-----
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=mLy3
-----END PGP SIGNATURE-----