-
Notifications
You must be signed in to change notification settings - Fork 224
Hi,
We have been planning on moving safe-settings to a more durable model of ownership. Currently, the project resides in the GitHub org which is not suitable for a open source project because we don't allow outside collaborators. We also have a set of governance policies like only allowing default setup for CodeQL that does not work well in a fork-based contribution model.
We have several contributors who have expressed interest in becoming more active and being part of a core team of maintainers. There are also several pain-points with having a single person merging all the PRs and we would like to bring certain automation to automatically merge PRs from trusted committers.
So we are looking to migrate the project to a github-owned, open source org.
We are still working on the details and things will happen over the next few weeks or months. But expect that this repo will be migrated with all the metadata to a new org and the this will become an archive repo.
Please let us know your thoughts.
All reactions
-
🚀 3
Replies: 7 comments 14 replies
Glad to hear that your opening this project to more OSS contributors. 👍
On the other hand, I was hoping GitHub would eventually include Safe-Settings in their actual product, offer enterprise support etc. Are there any plans in that regard?
All reactions
That would be great. I'm recently porting over our management of GitHub config from Terraform to safe-settings, and safe-settings feels almost production ready, but has a lot of bugs and gaps - I think moving towards a better support model that enables more contributions will help close the gaps.
All reactions
We have been flirting with Safe Settings since our account rep recommended it to our organization over a year ago, however we have been unable to properly implement it. As was said above, it's almost production ready.
We are now trying to decide if we are going to roll our own with Terragrunt, or try and stick it out and deal with the existing problems.
It would be really nice to know what the timeline is for moving this to open source governance. It's been ~3 months since the original post, so hopefully this will happen soon.
All reactions
If you're deciding now, do not use this project. Its not in good shape.
All reactions
-
👍 1
allstar isn't super great either. it seems both projects are suffering and lack even their advertised basic functionality in some ways :(
All reactions
Any updates on this? The project has a lot of open issues and pull requests and this project is a great way to governing a GitHub organization!
All reactions
At the moment this vague-but-unfulfilled promise to move to an open governance model is discouraging anyone from trying to do it themselves. Can we get a commitment when it's happening, or an admission that it's not happening so the community can do it themselves?
All reactions
We will get this done in a few weeks. I was hoping to move to a specific org but we will move it out in a few weeks.
All reactions
-
👍 3 -
🎉 3
Any progress on this transfer?
All reactions
No luck! I am also anxiously waiting for the approvals to go through.
All reactions
-
❤️ 2
@decyjphr First, thank you again for leading the charge on this, it is much appreciated. ❤️
I wanted to ask if there was any other forum/avenue we could express our interest/excitement in this to push up the priority of the transfer? Or, any other community-oriented tasks we could start making progress on, while we're waiting for the transfer to go through?
All reactions
-
👍 4
@decyjphr Any progress on this. We're starting to use Safe Settings in a more serious way and we're finding issues and improvements that we would be happy to contribute fixes for (see for example: #1013 and #1015 and we're looking at a few other things) but without the ability to contribute we're kinda stuck to making the changes just for ourselves.
All reactions
-
👍 3
I am checking for approval on a weekly basis but the progress has been slow.
All reactions
-
❤️ 2
We have finally transferred the repo to github-community-projects/safe-settings. Now, we can work on a model to include outside direct collaborators as trusted contributors.
All reactions
-
👍 1 -
🎉 6
That's great, though it seems the project is still quite dead. I have 9 PRs opened for various fixes since couple of weeks ago and there doesn't seem to be any feedback 😭
All reactions
Hi, Is the lack of updates just temporary, or should we consider the possibility that the project is no longer being maintained?
All reactions
Have the same question. 60 open PRs and counting. People seem to be more than willing to contribute.