Re: Q: single-maintainer vs team-maintainance of packages
Simon Josefsson <[email protected]>
| Newsgroups | gmane.linux.debian.devel.vote |
|---|---|
| Message-ID | <[email protected]> |
I think this may be getting off topic for debian-vote, so unless there is some reply that moves it back to DPL-campaigning territory, this is my last response. I think this is an important enough topic to warrant serious attention from a DPL. Marc Haber <[email protected]> writes: > On Tue, Mar 24, 2026 at 11:07:31PM +0100, Simon Josefsson wrote: >>Marc Haber <[email protected]> writes: >>> Adduser, on the other side, I would love to have team maintained. Are >>> you planning to fine me because I have failed to assemble a team >>> around adduser? Or what do you have in your mind to make people do >>> team work if a team fails to form? >>> >>> Will I get people assigned to help with adduser? Who is going to >>> manage those non-volunteers? >>> >>> Team maintainance is a good thing. But forcing or requiring it is not >>> going to work. Don't assume that there are people queuing up to >>> co-maintain packages. >> >>I share your reaction, but also: please don't assume poeple will NOT >>randomly appear if there is a team around packages. You don't >>necessarily need to do anything beyond changing the 'Maintainer:' field. > > Like this: ? > $ git blame debian/control | grep Maintainer > 9efa1964 (Marc Haber 2018-02-02 17:07:49 +0100 4) Maintainer: Debian > Adduser Developers <[email protected]> > > Note the date. Some people appeared, but also vanished again. I never understood the semantics of those self-referential teams. Are they open to anyone not already part of the team? I have no idea about 'adduser', but I found that for anything remotely related to security, the https://wiki.debian.org/Teams/pkg-security is a nice choice, where some people appear to be randomly helping out fixing team-maintained packages. >>I wish there was a 'Debian Developer Team' where all packages could be >>welcome to. > > We already have that in Debian salsa. I think there is disagreement on what that group means, and how the Salsa /debian/ namespace interacts with the 'Maintainer' field of the package. Some people seems to believe /debian/ is the continuation of the old alioth DD-wide team and open for writing by anyone. Some people believe is a nice place to store your Salsa repository without needing any additional Salsa group or permission management, but that the Maintainer: field is the authority on who "owns" a package and can make changes. I can't find any documentation clearly deciding who is right. > I still appreciate people submitting merge requests instead of > directly intefering with debian/latest. +1 /Simon
signature.asc
(application/pgp-signature, 1.2 KB)
-----BEGIN PGP SIGNATURE----- iQNoBAEWCgMQFiEEo8ychwudMQq61M8vUXIrCP5HRaIFAmnDFPAUHHNpbW9uQGpv c2Vmc3Nvbi5vcmfCHCYAmDMEXJLOtBYJKwYBBAHaRw8BAQdACIcrZIvhrxDBkK9f V+QlTmXxo2naObDuGtw58YaxlOu0JVNpbW9uIEpvc2Vmc3NvbiA8c2ltb25Aam9z ZWZzc29uLm9yZz6IlgQTFggAPgIbAwULCQgHAgYVCAkKCwIEFgIDAQIeAQIXgBYh BLHSvRN1vst4TPT4xNc89jjFPAa+BQJn0XQkBQkNZGbwAAoJENc89jjFPAa+BtIA /iR73CfBurG9y8pASh3cbGOMHpDZfMAtosu6jbpO69GHAP4p7l57d+iVty2VQMsx +3TCSAvZkpr4P/FuTzZ8JZe8BrgzBFySz4EWCSsGAQQB2kcPAQEHQOxTCIOaeXAx I2hIX4HK9bQTpNVei708oNr1Klm8qCGKiPUEGBYIACYCGwIWIQSx0r0Tdb7LeEz0 +MTXPPY4xTwGvgUCZ9F0SgUJDWRmSQCBdiAEGRYIAB0WIQSjzJyHC50xCrrUzy9R cisI/kdFogUCXJLPgQAKCRBRcisI/kdFoqdMAQCgH45aseZgIrwKOvUOA9QfsmeE 8GZHYNuFHmM9FEQS6AD6A4x5aYvoY6lo98pgtw2HPDhmcCXFItjXCrV4A0GmJA4J ENc89jjFPAa+wUUBAO64fbZek6FPlRK0DrlWsrjCXuLi6PUxyzCAY6lG2nhUAQC6 qobB9mkZlZ0qihy1x4JRtflqFcqqT9n7iUZkCDIiDbg4BFySz2oSCisGAQQBl1UB BQEBB0AxlRumDW6nZY7A+VCfek9VpEx6PJmdJyYPt3lNHMd6HAMBCAeIfgQYFggA JgIbDBYhBLHSvRN1vst4TPT4xNc89jjFPAa+BQJn0XTSBQkNZGboAAoJENc89jjF PAa+0M0BAPPRq73kLnHYNDMniVBOzUdi2XeF32idjEWWfjvyIJUOAP4wZ+ALxIeh is3Uw2BzGZE6ttXQ2Q+DeCJO3TPpIqaXDAAKCRBRcisI/kdFooU8AQD09KY6Wqqj UUFMJFdB2Njj3ZEvuLbp/wblWm8+y8PcMAEA4lSUtRAiEmUJMiENmczYbgQN77n6 dWJG7GnRf8QGpgw= =+v3R -----END PGP SIGNATURE-----