Skip to content
Daniel "koolfy" Faucon edited this page Jan 23, 2017 · 3 revisions

DRAFT DRAFT DRAFT DRAFT DRAFT DON'T TAKE THIS SERIOUSLY FOR NOW DRAFT DRAFT DRAFT DRAFT DRAFT

This is just as experiment for now.

The goal of this project is to maintain a list of essential security projects that appear to be in need of assistance in order to survive.

Rules:

  1. a project consists of open-source (comment: should we get into the FOSS argument?) code
  2. a project has at least one public stable release
  3. a project does not sell its code in any way that affects its use by the community, and other downstream projects
  4. everything else is not considered a "project" here
  5. An attempt to contact anyone listed as maintainer (even anonymously) must be made before adding a project to the list. No need to create panic by adding in random project that might be more alive than they look.
  6. Listing projects because "they are run by complete morons" will always be rejected. Forking is your decision.

A project might be in need of:

  • More code contributors
  • More code review
  • More financial aid
  • A whole new maintainment team (let's not swap one single overloaded person by another as much as we can)

Methodology:

  • When an important security tool we rely on appears to be showing signs of fatigue, create a Github issue.
  • If the project meets our criterias of what a project is, and what a project might need, we will attempt to establish contact with the current maintainers of said project
  • If no response or sign of life have been picked up in TBF months, the project makes it on top of the list.
  • If a contact is established and the current maintainers agree that they need help, a discussion is engaged as to what category and what help the project requests. (according to factual, verifiable criterias for each category)
  • If a contact is established and the current maintainers disagree that they need help, they make it to another separate list of "Hey, I'm actually doing fine :)" projects.
  • At any point in time, maintainers can request getting in and off the "Hey, I'm actually doing fine :)" list
  • All projects would benefit from your help :) this is only for projects on the verge of destruction
  • If they so desire, a short wiki page might be offered to some projects to formulate their situation, context, urgency further, in a format more descriptive than just "being on the list"

Comments:

  • We are not in nay way involved in any funding process. This is just a list. Please don't make our lives complicated.

Clone this wiki locally