Hi Emmanuel,

- d/patches/0011-fix-vulnerable-username.patch: AFAIU your are not the
   author of that patch
   
https://github.com/mitmproxy/mitmproxy/commit/71c9234057922bc29b9734ec408d712113d294d2,
   you should mention the Origin and the correct Author. Also
   Bug-Debian key, it would be great add it.

Fixed the patch file with the right headers.

- Same commento for d/patches/0010-remove-return-in-finally.patch

Added the Bug-Debian key.

- Seems that mitmproxy/contrib/tornado/__init__.py is LGPL-2.1+.

I see Apache-2.0 in the comment [1], which also matches the one from the 
upstream repo [2]. Is there anything else I should check?

- Could you improve d/upstream/metadata file please?

Updated.

Thanks again.


[1] 
https://salsa.debian.org/python-team/packages/mitmproxy/-/blob/debian/master/mitmproxy/contrib/tornado/__init__.py?ref_type=heads#L2
[2] 
https://github.com/tornadoweb/tornado/blob/master/tornado/platform/asyncio.py

--
Regards,
Lester

[email protected]
OpenPGP: 107B6026A82D044C97D7D8B92100C145E0F3655E

Attachment: OpenPGP_signature.asc
Description: OpenPGP digital signature

Reply via email to