Re: RFC: Securing maintainer uploads to


On Thu, Nov 10, 2011 at 6:47 AM, Olav Vitters <olav vitters nl> wrote:
> 3. Access is determined using "doap" files
> 4. If you're not in the doap file of that module, you cannot upload
It's pretty common for people not listed as maintainers in the doap
files to do releases, especially for the lesser maintained modules.  I
don't think that's a bad thing, either.

In fact, I think the lack of fine grained ACLs for this sort of thing
is one part of GNOME that work better than projects that try to lock
things down more aggressively.


