Quillpad is looking for new maintainers

jackpot@lemmy.mlbanned from sitebanned from site to Open Source@lemmy.ml – 108 points –
Help Wanted!!! · Issue #275 · quillpad/quillpad
github.com
10

You are viewing a single comment

This is how one attracts and invites Jia Tan and Hans Jansen types.

this isnt worth the time, it's not a dependency of a huge piece of software

Malicious account holders with a long term goal need to build reputation. It doesn't matter much that such an app isn't a dependency of other software.

Practically every FOSS project is actively looking for volunteers/maintainers all of the time. More contributors are not problematic.

The xz problem was that they socially engineered the main dev into giving them the keys to the kingdom.

Making one a maintainer (with merge and possibly even direct commit/push permissions) is handing them a key to the kingdom. Recruiting a maintainer out of the blue without them being already contributor and long term participant in the project is questionable.

I believe that the bad actor was a contributor for several years before becoming a maintainer

3 more...