ossf / tac

Technical Advisory Council
https://openssf.org
Other
105 stars 46 forks source link

Create TAC-Decision-Process.md #319

Closed SecurityCRob closed 1 month ago

SecurityCRob commented 2 months ago

proposed documentation for how the TAC should make decisions

marcelamelara commented 1 month ago

To make the decision process even clearer, I think we could look at how SLSA handles different PR types. Not suggesting that those types all make direct sense in our context, but I like how the table concisely enumerates decision categories, decision timelines/periods, and number of needed approvers for each. So because this doc is aiming to codify different decision categories for us, I wonder if we'd want to adopt a similar format for this doc? What do others think?

SecurityCRob commented 1 month ago

To make the decision process even clearer, I think we could look at how SLSA handles different PR types. Not suggesting that those types all make direct sense in our context, but I like how the table concisely enumerates decision categories, decision timelines/periods, and number of needed approvers for each. So because this doc is aiming to codify different decision categories for us, I wonder if we'd want to adopt a similar format for this doc? What do others think?

<3 I'll see what I can do to Goose-ify that table. tyvm!!!!!