docs(ospo): community health rollout v2 — README, agents.md, health files#12519
docs(ospo): community health rollout v2 — README, agents.md, health files#12519dj4oC wants to merge 1 commit into
Conversation
Introduced by the Kiteworks Open Source Program Office (OSPO) on May 5, 2026. Changes: - README.md: rewritten with OSPO v2 template — license-specific Apache 2.0 migration guidance, Community & Support section with mandatory links (GitHub Discussions, Matrix, docs, enterprise support), Contributing workflow (Rebase Early/Often, Dependabot, PGP-signed commits, DCO, GitHub Actions policy), Security pointing to security.owncloud.com + YesWeHack bug bounty - agents.md: added OSPO Policy Constraints (GitHub Actions, Dependabot, Git Workflow) for AI coding agents - CODE_OF_CONDUCT.md: redirect to https://owncloud.com/contribute/code-of-conduct/ - CONTRIBUTING.md: redirect to https://owncloud.com/contribute/ - SECURITY.md: redirect to https://security.owncloud.com + YesWeHack - SUPPORT.md: redirect to https://owncloud.com/contact-us/ + channels OSPO: https://kiteworks.com/opensource Signed-off-by: David Walter <david.walter@kiteworks.com>
|
Thanks for opening this pull request! The maintainers of this repository would appreciate it if you would create a changelog item based on your changes. |
dj4oC
left a comment
There was a problem hiding this comment.
Docs/governance rollout: rewrites README/CONTRIBUTING, adds CODE_OF_CONDUCT.md, SECURITY.md, SUPPORT.md, and a new agents.md with AI-agent contribution guidelines and OSPO policy constraints.
Findings
Nothing blocking from a code-review standpoint (no source files touched). Two non-blocking notes: (1) the README's "License Migration to Apache 2.0" section describes a GPL-2.0 → Apache-2.0 relicensing plan and prerequisites (CLA/DCO coverage, copyleft-dependency audit, KDE heritage review) — this is a licensing/legal determination and should be signed off by Legal/OSPO ownership rather than merged on the strength of a docs PR review alone; the content reads as informational/aspirational which is appropriate, just flagging it's outside this bot's competence to validate. (2) agents.md is a reasonable, low-risk addition (build commands, path map, policy constraints) — no concerns there.
Cross-platform check
N/A — documentation only.
Verdict
Commenting (no blocking issues)
🤖 Automated review by Claude Code (security · stability · performance · coverage)
Generated by Claude Code
Summary
This PR is part of the Kiteworks OSPO community health rollout (kiteworks.com/opensource), applied to all ~110 public ownCloud repositories starting May 5, 2026.
Test plan
🤖 Generated with Claude Code as part of the ownCloud OSPO rollout.
Kiteworks OSPO: https://kiteworks.com/opensource