Extras Security Policy

Warren Togami wtogami at redhat.com
Thu Sep 8 07:45:14 UTC 2005

Ralf Corsepius wrote:
> IMO, the problem reaches deeper: FE entirely lacks a post-release QA
> policy.
> Once a package has entered CVS, maintainers have all kind of freedom to
> commit all kind of foolishness they want to commit ;)

The old Fedora.us Extras enforced QA for every package update, but it 
quickly became apparent that it was a huge waste of time and effort when 
both are in short supply.

If a maintainer decides to commit all kinds of foolishness to their own 
packages they can be warned, and if they continue we can easily pull 
their CVS access.  It has not been a problem yet, but we can deal with 
it if it does happen.

Warren Togami
wtogami at redhat.com

