-
Notifications
You must be signed in to change notification settings - Fork 19
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Clarify + standardize contributing requirements across repos #17
Comments
From ossf/scorecard#1553:
|
|
The OpenSSF Charter says projects should be using DCOs. It does not require CLAs or copyright assignments. We (the LF) have tools if you really want to manage CLAs. However, I recommend against them in general. CLAs greatly increase risk of project failure due to lack of contributions. I think the simpler approach is to add DCO enforcement to the automated pull requests. Then it's easily enforced. We already do this on the best practices badge (which is an OpenSSF project). |
There doesn't appear to be standard contributing requirements across OSSF projects (ie do we use an LF CLA? Should projects set up EasyCLA? Do we use DCO?)
There's lots of good info about setting up environments to contribute, but could use some boilerplate about contributing that's consistent across the OSSF.
The text was updated successfully, but these errors were encountered: