Triaging suggestions by maintainers #325
Labels
No labels
automation
backend
bug
contributor experience
data
deployment
documentation
duplicate
good first issue
help wanted
nice to have
notifications
package maintainer
performance
skin
tech debt
user story
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference: lix-community/nix-security-tracker#325
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
As a package maintainer I want to help the security team with triaging. This should work exactly the same way as for the security team, except that my proposals for state changes need to get reviewed and confirmed by the security team.
Discussed with @erictapen: We need to take into account that work done by maintainers or regular users always needs to be validated by the security team (https://github.com/Nix-Security-WG/nix-security-tracker/issues/324). So while maintainers may dismiss items, they will not actually be fully dismissed. We still may remove user-dismissed/selected items from the user view in order to reduce their queue, but only visually. And this may need to be done per user.
One way to display user/maintainer proposals to the security team could be by showing a up/down vote count. This approach would require or at least beneft from infrastructure also needed for #200