ossf / wg-securing-critical-projects

Helping allocate resources to secure the critical open source projects we all depend on.
Apache License 2.0
318 stars 34 forks source link

[INFORM] Allstar joining the OpenSSF Scorecard project #90

Closed justaugustus closed 1 month ago

justaugustus commented 1 month ago

As part of the official chartering of the OpenSSF Scorecard project, the @ossf/scorecard-maintainers made a few decisions:

  1. (in discussions with @jeffmendoza) to include Allstar as a project within the OpenSSF Scorecard ecosystem
  2. to include @jeffmendoza as a member of bootstrap Steering Committee for OpenSSF Scorecard

We've asked @SecurityCRob (in his capacity as a TAC member) if there are any process requirements in transitioning a project to another WG and it sounds like the only requirements are to:

This issue is intended to:

cc: @ossf/wg-securing-critical-projects @afmarcum

SecurityCRob commented 1 month ago

Your two points look good. Outside of the maintainers agreeing and then notifying the two involved working groups (I informed the BEST this week about the Allstar move potential) and updating documentation (WG readme's) you should be good to go! SUPER happy to see the synergy between Allstar and Scorecard and am eager to see what awesome stuff you all can achieve together now!

justaugustus commented 1 month ago

Your two points look good. Outside of the maintainers agreeing and then notifying the two involved working groups (I informed the BEST this week about the Allstar move potential)

I've also cross-filed this tracker in BEST: https://github.com/ossf/wg-best-practices-os-developers/issues/502

and updating documentation (WG readme's)

Added this as an item for the umbrella issue: https://github.com/ossf/scorecard/issues/4073

SUPER happy to see the synergy between Allstar and Scorecard and am eager to see what awesome stuff you all can achieve together now!

@SecurityCRob — really appreciate your support throughout this process! 💕