Debarshi Ray wrote: >> However, my point was >> that the mere existence of this software won't magically eliminate the >> need for humans to do package reviews, > > Sure. After it is just a tool, but the idea is to reduce the number of > manual steps to a review. Manually carrying out mundane things like > verifying whether the package builds in Koji/Mock, the Source0 tag is > sane, md5sum of upstream and packaged tarballs match, rpmlint output, > etc. should not burden a person every time he/she does a review. > Note that the software needs to be clear on what is still required of the human reviewer. for instance, Source tag has several automatable steps but also must have a human review that the Source URL is canonical in the first place. -Toshio
Attachment:
signature.asc
Description: OpenPGP digital signature
-- fedora-devel-list mailing list fedora-devel-list@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/fedora-devel-list