-
Notifications
You must be signed in to change notification settings - Fork 41
EESSI Governance #456
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
EESSI Governance #456
Conversation
…we can do that in follow up PRs
@casparvl I've fixed some typos in casparvl#1 and casparvl#2. |
fix typo
fix some more typos
Oh yeah, thanks, merged! |
docs/governance/governance.md
Outdated
|
||
### 5.2 Removing Team Members | ||
<!-- Describe under what conditions someone may be removed (e.g., inactivity, conduct). --> | ||
Teams decide themselves decide the procedure to remove new Team members. As for the procedure of adding Team Members, the procedure to remove Team Members should reflect the sensitivity of the position. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Teams decide themselves decide the procedure to remove new Team members. As for the procedure of adding Team Members, the procedure to remove Team Members should reflect the sensitivity of the position. | |
Teams themselves decide the procedure to remove Team members. As for the procedure of adding Team Members, the procedure to remove Team Members should reflect the sensitivity of the position. |
docs/governance/governance.md
Outdated
TODO: This project follows the [Contributor Covenant](https://www.contributor-covenant.org/) Code of Conduct. | ||
|
||
## 8. Contribution Agreement | ||
TODO: Should refer to some Contribution Agreement. Is contributing only possible after signing this agremeent? If so, that should be stated here |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Linux projects have a standard approach here which doesn't involve signing a CA
TODO: Should refer to some Contribution Agreement. Is contributing only possible after signing this agremeent? If so, that should be stated here | |
TODO: Should refer to some Contribution Agreement. Is contributing only possible after signing this agreement? If so, that should be stated here |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Hm, that sounds attractive, since it means we don't need a lawyer to draw up something for us :)
carefully hand-crafted ... aehm copiloted ... policies
…SSI softwares stack versions and individual software. Remove some duplicate statements
docs/governance/policies.md
Outdated
|
||
- EESSI is committed to providing a complete SBOM for all deployed software. | ||
- The SBOM should include versioning, licensing, and dependency information. | ||
- Preferred formats include SPDX or CycloneDX. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
I'm not sure if we can already meet the latter two points. If not, does it make sense to include them? I don't think so. Or at least we should make clear it's not currently the case, but is a long term goal.
Co-authored-by: Adam Huffman <[email protected]> Co-authored-by: Bob Dröge <[email protected]>
…r each of the considerations
…ernate for a single meeting, or until further notice
The EESSI Steering Committee Members are obligated to respect the privacy and | ||
security of the reporter of any incident. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
What does "and security" imply? Privacy is easy to understand, but why security
? What does that mean?
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Comes from standard contributor covenant, so leaving this as is.
This refers to personal security
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
A few last minute things...
|
||
End users agree to the [Terms of Use](terms_of_use.md) when using the software installations provided by EESSI. | ||
|
||
## 3. Decision-Making |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Sometimes we use a dash to bind two words sometimes we don't...
Co-authored-by: Thomas Röblitz <[email protected]> Co-authored-by: Bob Dröge <[email protected]>
Co-authored-by: ocaisa <[email protected]>
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
lgtm
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
I approve these documents as initial governance for EESSI
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
I approve these documents as initial governance for EESSI (though I can't give an "Approve" status in the GitHub sense :))
requested changes were either made, or we clarified why the wording is as it is
To be agreed on by the Steering Committee. I think the most practical is if we keep iterating / wait until every one of us has given an approving review