Compliance Trestle Issue Review Notes

Compliance Trestle Issues

When

Occurs every other week.

Alternates between the following:

  • Mondays at 10 AM ET
  • Wednesday at 8 AM ET

Who

Maintainers and Triagers for the Compliance Trestle project

How to Review

Meeting recordings are available on the OSCAL Compass Youtube channel

Intro Script

A reminder that this meeting is being recorded and will be shared publicly on our Youtube channel to promote transparency and accountability. Your participation in these meetings is an agreement to abide by the OSCAL Compass Code of Conduct which can be found in the community repository.

Issue Triaging Steps

For each issue:

  • Read through comments and associated code
  • Determine consensus on whether it is in scope for trestle
  • Add appropriate labels (enhancement, bug, Backlog or milestone assignment)
  • Discuss technical implications
  • If in the milestone - assign to a collaborator

March 3, 2025

Moderator

Agenda

  • [topic] Should we move these meetings to LFX or extend the OSCAL Compass meeting by 30 minutes?
    • Move to LFX
    • Extend existing meeting for issue review
  • Review new issues
  • Reivew open PRs
  • Review SDK milestone

Notes

June 14, 2024

Moderator: jpower432

Agenda

  • Review new issues
  • Review 3.2.0 milestone
  • Review stale issues

Notes

  • [jpower432] With the release of v3.1.0, the milestone was closed
  • [jpower432] Started a project for a quick view of issues by catagory and looking for feedback
  • [jpower432] Transfer #1497
  • [jpower432] Close 1475. Schedule a Compliance Trestle Architecture Review in the community repo.

June 28, 2024

Moderator:

  • [AleJo2995] Alejandro Leiva

Agenda

  • Review new issues
  • Review 3.3.0 milestone
  • Review stale issues

Notes

  • [jpower432] Let's choose another day of the week to have this meeting to accommodate time zones where this is occuring on a Friday night. Can we get consensus here or shall we work through a Doodle poll?
  • [jpower432] Dicussion around ROADMAP
  • [AleJo2995] Transfer #1597, #1598, #1599, #1600, #1601, #1602, #1603, #1604, #1605 to compliance-trestle-demos repo
  • [AleJo2995] To create a slack thread on CNCF slack to track the work for release plannning and discussing probable branching strategy change

July 12th, 2024

Moderator

  • jpower432

Agenda

  • Review new issues
  • Review stale issues
  • Review milestone
  • Discuss release strategies

Notes

  • [jpower432] Get consensus on new time. Are there better times of day?
    Proposals -
  1. Should we hold more than one meeting
  2. Work on an automated async workflow using a tools like Derek

Action Items

  • [jpower432] Add an issue for datagen issues. Not well formed models

July 22th, 2024

Moderator

Agenda

  • Review new issues [ 20 mins ]
  • Review stale issues [ 30 mins ]
  • Discuss release strategies [ 10 mins ]

Notes

  • [jpower432] Discuss tentative milestone due date
  • [butler54] Two items:
    • An apology: I've got a flight I have to wake up for 4 hours after this is scheduled to finish so won't make the session
    • CI/CD: I'd like to see if we can identify a set of contributors to do a design session on CI/CD for oscal-compass as a whole so that we can cohesively move to a better state. At the moment it's being a little ad-hoc.
  • [jpower432] Skipping the release dicussion until we have more meeting participants

Action Items

  • Gather community input on #352 in Slack
  • Gather community input on #432 on whether they are using those CI options or are interested in other ones. Ask first within the inside team (Vikas, Chris, Lou)
  • On #462, ask Chris on the next issues review meeting the usability of this one by the community as well as the priority

August 7, 2024

Moderator

  • jpower432

Agenda

  • Hit record and read the intro script
  • Review current milestone [20 minutes] - Target date August 15
  • Review new issues [ 20 mins ]
  • Review stale issues [ 10 mins ]
  • Discuss triaging process improvements [ 10 mins ]

Notes

  • We have 6 open issues in our current milestone

  • [AleJo2995] Meeting is a little bit early for me, but anyways I'll try be there :)

class Remarks(OscalBaseModel):
    __root__: str = Field(..., description='Additional commentary about the containing object.', title='Remarks')

Action Items

August 19, 2024

Moderator

Agenda

  • Hit record and read the intro script
  • Review current milestone
  • Review new issues
  • Review pull requests that need review
  • Review stale issues

Notes

Action Items

  • Respond to discussions #1532. There appears to be an issue with the ssp demos as the trestle "add" command does not exists.
  • Submit bug for component definition discussion
  • #589 check in Chris and look at it for the next OSCAL release
  • #1275 next OSCAL release
  • #1417 - next OSCAL release
  • #1427 - next OSCAL release
  • #1428 - next OSCAL release

Septemeber 4, 2024

Moderator

Agenda

Notes

  • Discussed the trestle SDK proposal
  • Discussed the release workflow proposal
  • We need to discuss a process for dependabot PRs (topic for next time)
  • Determine what should be in the milestone

Action Items

  • [ ]

Septemeber 16, 2024

Moderator

Agenda

  • Hit record and read the intro script
  • Review new issues
  • Continue planning v3.5.0 milestone and including new issues
  • Discuss a process for dependabot PRs (topic from last meeting)

Notes

Action Items

October 2, 2024

Moderator

Agenda

Notes

Action Items

  • Jenn will create a blocked status for 4 and 5 in Traige view with unofficial label
  • Jenn looks at CNCF tools for scanning
  • Merge in dependabot and 1709
  • Release 3.4.1
  • Add a merge bot

October 14, 2024

Moderator

Agenda

Notes

  • Sticking with current issues 3.5.0 as these issues seem to have the most community support

Action Items

  • Add OSCAL Compass and email to setup.cfg
  • Explore Github App for compliance trestle (add an issue)

October 30, 2024

Moderator

Agenda

  • Hit record and read the intro script
  • Review new issues
  • Review open PRs
  • Continue planning v3.6.0 milestone and including new issues

Notes

  • CNCF project analytics: Scarf for advanced analytics for container & artifact distribution, package installation, and web traffic to source documentation.

Action Items

  • Add OSCAL Compass and email to setup.cfg
    • @butler54: Should be pyproject.toml

November 11, 2024

Moderator

Agenda

  • Hit record and read the intro script
  • Review new issues
  • Review open PRs
  • Continue planning v3.6.0 milestone and including new issues
  • Epic Review?

Notes

  • CNCF project analytics: Scarf for advanced analytics for container & artifact distribution, package installation, and web traffic to source documentation.

Action Items

  • Add OSCAL Compass and email to setup.cfg
    • @butler54: Should be pyproject.toml
  • Give feedback on issue 1713
  • Look at defining trestle constraints for properties

Decemeber 9, 2024

Moderator

Agenda

  • Hit record and read the intro script
  • Review new issues
  • Reivew open PRs
  • Plan for January release

Notes

Action Items

  • Ask Vikas about the versioning
  • Should we work on 1417, 589 - Checkin with Lou

February 3, 2025

Moderator

Agenda

  • Hit record and read the intro script
  • Review new issues
  • Reivew open PRs
  • Review milestone 3.8.0

Notes

  • Add comment to 1775 about scope/context
  • Create SDK changes after 1.1.3
Select a repo