Skip to content

governance: adopt DCO sign-off + flip CONTRIBUTING external-PR policy when the merge window opens #630

@thinmintdev

Description

@thinmintdev

What to build

Decision (audit Q6.3): adopt DCO sign-off (git commit -s / Signed-off-by), not a CLA. When you open the external-PR merge window, flip the CONTRIBUTING.md "external PRs aren't merged" line and document the DCO requirement (optionally add a DCO status check/bot).

HITL: the timing is the maintainer's call — open the window when ready.

Pointers: CONTRIBUTING.md. Audit Q6.3.

Acceptance criteria

  • CONTRIBUTING.md documents the DCO sign-off requirement
  • The "no external PRs" line is flipped when the merge window opens
  • (optional) DCO status check enabled

Blocked by

Metadata

Metadata

Assignees

No one assigned

    Labels

    documentationImprovements or additions to documentationoss-readiness2026-06-07 codebase-audit OSS-readiness backlogready-for-humanNeeds human implementation

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions