The controller imports mesh-host/validate through a replace onto the forge that holds it, and every build — the build agent's go build in a fresh toolchain container, the Dockerfile's go mod download — would have fetched it through the public proxy and checksum database at build time: a merge breaking main on the network, the class Phase 1 removes. vendor/ is committed; go builds from it with nothing fetched, and refuses to build when it and go.mod disagree, so a pin moved without go mod vendor fails at once. The Dockerfile copies vendor/ and builds with GOPROXY=off.
9 lines
310 B
Markdown
9 lines
310 B
Markdown
# Maintainers
|
|
|
|
Maintainership is on a per project basis.
|
|
|
|
### Maintainers
|
|
- Derek Collison <derek@nats.io> [@derekcollison](https://github.com/derekcollison)
|
|
- Ivan Kozlovic <ivan@nats.io> [@kozlovic](https://github.com/kozlovic)
|
|
- Waldemar Quevedo <wally@nats.io> [@wallyqs](https://github.com/wallyqs)
|