>> Secret/silent buildroot overrides bear a risk. It's a potential race >> condition for everyone who is not aware of such overrides. >> >> For example, one can't expect a new package contributor, who may be >> working on his first Fedora package, to know about buildroot overrides in >> koji that may be active while building and preparing an update for bodhi. >> >> Security/emergency-fixes are also affected by buildroot overrides. > > I'd really like to know what people's thoughts are on making the > overrides more known. One problem we have with them as well is that > maintainers don't let us know when the build is done, so that we can > remove the override to prevent poisoning further builds. I wasn't even aware that we were suppose to notify when we no longer needed the build overrides. Maybe the eng ticket should remain open once the override has been done and only closed once the override is removed with a generic note from rel-eng. Peter -- fedora-devel-list mailing list fedora-devel-list@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/fedora-devel-list