-
Notifications
You must be signed in to change notification settings - Fork 8
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
First draft security manager faq #77
Conversation
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Thanks, this is a good start!
- See [how to create a Github team](https://docs.github.com/en/organizations/organizing-members-into-teams/creating-a-team) | ||
|
||
- Who should have the Security Manager role? | ||
- Trusted members of the security-council team who may be required to audit security across various Jupyter subprojects. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Would be good to link to the list of members of this team when it's available
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Yes, I think before the FAQ is finalized we can hopefully have a reference for the list of members publicly available somewhere, once that is done, I can include that link here!
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
I think we should have list in the Jupyter Governance. I'm thinkign we could/should also have this information in a yaml format and autoformatted in relevant documents.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Also I think the current list is here:https://github.com/jupyter/security/blob/main/README.md?plain=1#L10-L15
Co-authored-by: Simon Li <[email protected]>
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
I'm happy to merge as is and iterate.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Thank you for picking this up!
Should this be merged? |
Ok, let's get that in and iterate. |
I worked a bit on a potential document for the FAQ, with some of the questions posed in #76 as well as some by @choldgraf, from an earlier Jupyterhub related email thread. I would appreciate feedback!
Some of these points I believe have not been discussed in detail within the Jupyter security council, like the details of the auditing schedule and the selection of the security manager team members, so it would be great to have input on that as well.