oscal-compass / community

OSCAL Compass community-wide collaboration space
Apache License 2.0
4 stars 2 forks source link

Align pypi with github organisational structures #52

Open butler54 opened 1 month ago

butler54 commented 1 month ago

compliance-trestle and compliance-trestle-fedramp-plugin are independently maintained projects on pypi with lose governance. Recommend that stricter governance is managed (either by creating an org or linking with the lifecycle of github maintainers).

jpower432 commented 1 month ago

Thanks @butler54. I have added this as a topic to our next Oversight Committee meeting occurring next week. I would tentatively recommend that this be covered as part of a design proposal to centralized our org automation and CI/CD workflows.