proposal to drop licence compatibility checks from adequate

2024-09-08 Thread Serafeim (Serafi) Zanikolas
hi,

I've recently taken over adequate(1) and am considering to drop its license
compatibility checks, for several reasons:

- unlike 2013, which is when adequate grew this functionality, today many
  well-funded organizations actively care about license compliance (e.g. see
  fossology.org), so I'd expect major cases of non-compliance to be noticed
- afaict in almost 11 years of adequate's existence, only one actual case of
  non-compliance was found (#749801) [0]
- the relevant logic is non-trivial, and prone to false positives in the case
  of binary packages shipping multiple libraries with different licenses; it
  also hardwires soname/license/version mappings for major libraries (I'd guess
  as a workaround for the aforementioned issue), which I consider unsustainable
  from a maintenance PoV

if you feel strongly against this proposal, you're more than welcome to join the
adequate maintainers team (today, just me) and make your case with code. of
course you're also welcome to join even if you do agree with the proposal!

thanks,
serafi

ps. please cc me in replies

[0] I've looked at piuparts and adequate tagged bugs


signature.asc
Description: PGP signature


Bug#1081157: DDPO: salsa icons disappeared

2024-09-08 Thread Matthias Geiger
Package: qa.debian.org
Severity: normal
X-Debbugs-Cc: werdah...@debian.org

-BEGIN PGP SIGNED MESSAGE-
Hash: SHA256

Hi,

the DDPO overview page does not display the icons repos having set those 
anymore.
I noticed this just recently. 

best,

werdahias

-BEGIN PGP SIGNATURE-

iIsEARYIADMWIQQUWTv/Sl6/b+DpcW7svtu2B7myvgUCZt3uJRUcd2VyZGFoaWFz
QGRlYmlhbi5vcmcACgkQ7L7btge5sr5F+AD+MLrF/QQOETtd0El8/cWEKy9vP9+T
VZFKwMf9oRaw3M0A/1wWUU0FE/76Fws8Yogf8Zi4ndaw5TVgjtFpOiXDSWkJ
=FiBv
-END PGP SIGNATURE-