potiuk commented on PR #48098: URL: https://github.com/apache/airflow/pull/48098#issuecomment-2779720861
> Visibility, transparency. Well. Changing title of PR after it's merged is wrong and it expects an extra effort on maintainers who do it in their free time. And we cannot refer to CVE before we announce it, and when you look at CVE announcement you have link to the PR. I think it's good enough. If you think you might want to increase visibility, I suggest you start your own project where you keep the links between CBE and PRs even more transpartent. That would be a great relief for maintainers who do a lot of the work in their free time to keep your usage of the open-source projects they maintain secure. Would you like to start such a project? That would be greatly appreciated by all the open source maintainers who make their software available for free - mostly in their free time away from their families and other day job, Can we (open-source community) count on your help there @hartwork ? -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: [email protected] For queries about this service, please contact Infrastructure at: [email protected]
