[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: sponsor rules



* Previously Michael Bramer (grisu@debian.org) wrote:
> > Any sponsored package is installed into unstable, propagated through all
> > the mirrors, and implicitly bears the official Debian stamp. Is it really
> > a good idea to distribute and endorse the work of someone whose identity
> > hasn't yet been verified?
> 
> I don't see the problem.
> 
> I am a sponsor and I 
>  - download the orig.tar.gz myself
>  - download the diff.gz from the NM
>  - check the diff line by line (this is work)
>  - build the package myself and test it.
>  - after this all, I upload the package 
> 
> You, the sponsor, sig the package with your gpg-key.

I wasn't aware that sponsoring involved a detailed inspection of the diff
(I've never sponsored anyone). It seems that my concerns don't apply.

Joshua

-- 
Joshua Haberman  <joshua@haberman.com>



Reply to: