openedx / axim-engineering

GitHub Issue repository for the Axim engineering team
https://openedx.atlassian.net/wiki/spaces/COMM/pages/3241640370/Axim+Collaborative+Engineering+Team
4 stars 2 forks source link

Quarterly Audit of Github Users #1181

Closed github-actions[bot] closed 3 months ago

github-actions[bot] commented 4 months ago

It is time to perform the quartely audit of GitHub users in the openedx org. The playbook for performing the audit can be found here.

sarina commented 4 months ago

I ran this command and got a decently long list, that I think I can split into a few types of users

USERS w/ WRITE ACCESS & NO CLA: Done!

ekangedx - in legacy mobile: found onboarding thread, reduced access to Triage as originally requested
ericanwoga - in legacy push/pull/all: no longer at 2U, no offboarding ticket created by 2U IT; removed from GH org
mrazadar - in legacy push/pull/all: Was not properly offboarded by us. Removed from GH org
Daniel-hershel - legacy push/pull/all, Aurora: found onboarding ticket, corrected their Salesforce record

BOTS Should these be in the CLA database somehow?: In-Progress

edx-github-actions-runner
edx-netlify
open-craft-grove
openedx-codecov
openedx-semantic-release-bot
pactflow-github

Triage Access - I'm asking Legal if we need to have a CLA for Triage-only users

DonatoBD: Triage only
GwynSCC - Conference organizer
RyanRad-BSG: Docs writer
chris1tapia: PM, eN
czhang0912 - Triage, product manager (no add'l access)
davidw-sa - Conference organizer
jyliugithub - Marketing WG
lizc577 - Triage
mahendra0401 - Triage
mariiamoskalenko - Project manager RG
parttechdev - Conference organizer
santiagosuarezedunext - Product manager, eN
sdaitzman - UX dev Schema

Test accounts/duplicate accounts Accounts that we use to test, that belong to one of us - asking Legal how to handle a GH username that belongs to someone who already is under a CLA.

sarina-test

Whatever the result is, the playbooks need to be updated.

sarina commented 4 months ago

Moving to blocked - outstanding questions for Legal & the team

sarina commented 3 months ago

We do not need a CLA for Triage-only users. One person can have multiple GH usernames, but they need to be associated correctly. Waiting on Ed to figure out best way to do it.

sarina commented 3 months ago

We don't need Triage only users in SF so we're good here.

feanil commented 3 months ago

Whatever the result is, the playbooks need to be updated.

@sarina were the playbooks updated as needed in accordance with your comment above?

sarina commented 2 months ago

Y.s https://openedx.atlassian.net/wiki/spaces/COMM/pages/3438903337/On-call+Playbooks#%F0%9F%94%8D-Audit-Github-Users