#3298: Clean up list of OSGeo GitHub repo members with "owner" role
----------------------+---------------------------
Reporter: neteler | Owner: sac-tickets@…
Type: task | Status: new
Priority: normal | Milestone: Unplanned
Component: SysAdmin | Keywords: GitHub
----------------------+---------------------------
We have a surprisingly long list of OSGeo Github repo members with "owner"
role. Some of them (seem to) have left OSGeo many years ago, hence it
becomes a security issue.
Members · People · OSGeo · GitHub
Suggestion: cleanup up this list and selectively downgrade their rolw
since "owners" could even delete the entire organization.
Some observations:
- one member does not even have 2FA activated.
- some members are out of OSGeo for even a decade?
**Question**: who decides about who is "owner", the board?
--
Ticket URL: <https://trac.osgeo.org/osgeo/ticket/3298>
OSGeo <Gter - OSGeo;
OSGeo committee and general foundation issue tracker.
#3298: Clean up list of OSGeo GitHub repo members with "owner" role
----------------------+----------------------------
Reporter: neteler | Owner: sac-tickets@…
Type: task | Status: new
Priority: normal | Milestone: Unplanned
Component: SysAdmin | Resolution:
Keywords: GitHub |
----------------------+----------------------------
Comment (by robe):
I'm unclear who decides on this. I would assume the board is as good as
any or the owners of OSGeo github org.
At anyrate I can't see anyone arguing that people who haven't been
involved in OSGeo for many years should be owners. I would go ahead and
remove them, perhaps note on this ticket who is being removed so people if
they are paying attention can ask to be put back.
--
Ticket URL: <#3298 (Clean up list of OSGeo GitHub repo members with "owner" role) – OSGeo;
OSGeo <Gter - OSGeo;
OSGeo committee and general foundation issue tracker.
#3298: Clean up list of OSGeo GitHub repo members with "owner" role
----------------------+----------------------------
Reporter: neteler | Owner: sac-tickets@…
Type: task | Status: new
Priority: normal | Milestone: Unplanned
Component: SysAdmin | Resolution:
Keywords: GitHub |
----------------------+----------------------------
Comment (by kalxas):
I agree we need to review this list.
Let's bring it up in the next board meeting, perhaps we need a policy.
--
Ticket URL: <#3298 (Clean up list of OSGeo GitHub repo members with "owner" role) – OSGeo;
OSGeo <Gter - OSGeo;
OSGeo committee and general foundation issue tracker.
#3298: Clean up list of GitHub OSGeo organization members with "owner" role
----------------------+----------------------------
Reporter: neteler | Owner: sac-tickets@…
Type: task | Status: new
Priority: critical | Milestone: Unplanned
Component: SysAdmin | Resolution:
Keywords: GitHub |
----------------------+----------------------------
Changes (by neteler):
* priority: normal => critical
* summary: Clean up list of OSGeo GitHub repo members with "owner" role =>
Clean up list of GitHub OSGeo organization members with "owner" role
Old description:
We have a surprisingly long list of OSGeo Github repo members with
"owner" role. Some of them (seem to) have left OSGeo many years ago,
hence it becomes a security issue.
Members · People · OSGeo · GitHub
Suggestion: cleanup up this list and selectively downgrade their rolw
since "owners" could even delete the entire organization.
Some observations:
- one member does not even have 2FA activated.
- some members are out of OSGeo for even a decade?
**Question**: who decides about who is "owner", the board?
New description:
We have a surprisingly long list of OSGeo Github organization members with
"owner" role. Some of them (seem to) have left OSGeo many years ago, hence
it becomes a security issue:
Members · People · OSGeo · GitHub
Suggestion: cleanup up this list and selectively downgrade their role to
e.g. member since "owners" could even delete the entire OSGeo
organization.
Some observations:
- one member does not even have 2FA activated. -> no-go
- some members are out of OSGeo for even a decade? -> downgrade or remove
**Question**: who decides about who is "owner", the board? -->
Board Meeting 2024-12-30 - OSGeo
--
--
Ticket URL: <#3298 (Clean up list of GitHub OSGeo organization members with "owner" role) – OSGeo;
OSGeo <Gter - OSGeo;
OSGeo committee and general foundation issue tracker.
#3298: Clean up list of GitHub OSGeo organization members with "owner" role
----------------------+----------------------------
Reporter: neteler | Owner: sac-tickets@…
Type: task | Status: new
Priority: critical | Milestone: Unplanned
Component: SysAdmin | Resolution:
Keywords: GitHub |
----------------------+----------------------------
Comment (by neteler):
Discussed at board meeting 2024-12-30:
-
Board Meeting 2024-12-30 - OSGeo
--
Ticket URL: <#3298 (Clean up list of GitHub OSGeo organization members with "owner" role) – OSGeo;
OSGeo <Gter - OSGeo;
OSGeo committee and general foundation issue tracker.
#3298: Clean up list of GitHub OSGeo organization members with "owner" role
----------------------+----------------------------
Reporter: neteler | Owner: sac-tickets@…
Type: task | Status: closed
Priority: critical | Milestone: Unplanned
Component: SysAdmin | Resolution: fixed
Keywords: GitHub |
----------------------+----------------------------
Changes (by neteler):
* resolution: => fixed
* status: new => closed
Comment:
The number has been reduced to 20 members.
--
Ticket URL: <#3298 (Clean up list of GitHub OSGeo organization members with "owner" role) – OSGeo;
OSGeo <Gter - OSGeo;
OSGeo committee and general foundation issue tracker.