Re: Q: single-maintainer vs team-maintainance of packages

Simon Josefsson <[email protected]>
Newsgroups gmane.linux.debian.devel.vote
Message-ID <[email protected]>
I think this may be getting off topic for debian-vote, so unless there
is some reply that moves it back to DPL-campaigning territory, this is
my last response.  I think this is an important enough topic to warrant
serious attention from a DPL.

Marc Haber <[email protected]> writes:

> On Tue, Mar 24, 2026 at 11:07:31PM +0100, Simon Josefsson wrote:
>>Marc Haber <[email protected]> writes:
>>> Adduser, on the other side, I would love to have team maintained. Are
>>> you planning to fine me because I have failed to assemble a team
>>> around adduser? Or what do you have in your mind to make people do
>>> team work if a team fails to form?
>>>
>>> Will I get people assigned to help with adduser? Who is going to
>>> manage those non-volunteers?
>>>
>>> Team maintainance is a good thing. But forcing or requiring it is not
>>> going to work. Don't assume that there are people queuing up to
>>> co-maintain packages.
>>
>>I share your reaction, but also: please don't assume poeple will NOT
>>randomly appear if there is a team around packages.  You don't
>>necessarily need to do anything beyond changing the 'Maintainer:' field.
>
> Like this: ?
> $ git blame debian/control | grep Maintainer
> 9efa1964 (Marc Haber 2018-02-02 17:07:49 +0100 4) Maintainer: Debian
> Adduser Developers <[email protected]>
>
> Note the date. Some people appeared, but also vanished again.

I never understood the semantics of those self-referential teams.
Are they open to anyone not already part of the team?

I have no idea about 'adduser', but I found that for anything remotely
related to security, the https://wiki.debian.org/Teams/pkg-security is a
nice choice, where some people appear to be randomly helping out fixing
team-maintained packages.

>>I wish there was a 'Debian Developer Team' where all packages could be
>>welcome to.
>
> We already have that in Debian salsa.

I think there is disagreement on what that group means, and how the
Salsa /debian/ namespace interacts with the 'Maintainer' field of the
package.

Some people seems to believe /debian/ is the continuation of the old
alioth DD-wide team and open for writing by anyone.

Some people believe is a nice place to store your Salsa repository
without needing any additional Salsa group or permission management, but
that the Maintainer: field is the authority on who "owns" a package and
can make changes.

I can't find any documentation clearly deciding who is right.

> I still appreciate people submitting merge requests instead of
> directly intefering with debian/latest.

+1

/Simon
signature.asc (application/pgp-signature, 1.2 KB)
-----BEGIN PGP SIGNATURE-----
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=+v3R
-----END PGP SIGNATURE-----
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.