vtex / shoreline

VTEX Design System for back-office experiences. Currently available for internal usage at VTEX.
https://shoreline.vtex.com
23 stars 1 forks source link

Make the Figma libraries public #1913

Open beatrizmilhomem opened 1 month ago

beatrizmilhomem commented 1 month ago

give access to the Figma libs to users from agencies (outsourcing)

davicostalf commented 1 month ago

This includes who should use the library outside VTEX.

davicostalf commented 2 weeks ago
beatrizmilhomem commented 1 week ago

Após conversar com o time de Information Security, ficou decidido:

ggomarighetti commented 1 week ago

In my case, I have used the styleguide project and adminui before and currently the shoreline to make dashboards or internal tools with a quality graphical interface, and I am very grateful for the policy of making this work open-source and that anyone can use it and know how to take advantage of it for good.

Although I do not fit in the category of collaborator coming from external agencies or outsourcing as you mentioned in the initial message of this issue, I would like to make a contribution as a user in this “open source” modality (if that category were to be considered) although I understand the reasons for which the decision is taken, since “opening the internal libraries for anyone to see them” is a security risk, a mixed scheme could be proposed.

Differentiate and reserve certain screens or certain patterns that are very specific to the product you develop (an e-commerce back office for b2b scenarios) from the more generic ones such as a general layout with a sidebar, a container, the different paddings or margins involved in the various breakpoints, or the same generic templates or layouts promoted by yourselves in previous documentations such as listings, forms, details, settings, or others such as headers, blocks, layouts, etc.

Or as another alternative, some form where you can request access to the files as a reader, visitor, external, etc, where some kind of KYC is applied, or security questions are asked and a record is made of who accessed the files and at what time.

Thank you very much and your projects have helped me a lot in the development of my activity as a professional, and I hope you can achieve a security policy that continues to allow the use and / or study of your work for applications with good intentions of the open source community, a big greeting to the distance.

beatrizmilhomem commented 4 days ago

@ggomarighetti thank you for your comment and suggestion!

beatrizmilhomem commented 4 days ago

@davicostalf documentation proposal