quote
An OSS maintainer (P3) stated: “It’s always in the back of my mind when looking at an issue and seeing, should this go through the security advisory process? Or should it just be a normal PR and fix? That’s the end of it. But that’s wrong, and I know it. It still feels like, you know, hurting the reputation of my project. But it’s wrong, I know it.”
Authors
Sources
- A Mixed-Methods Study of Open-Source Software Maintainers On ... arxiv.org via serper
Referenced by nodes (1)
- OSS maintainers concept