Files
higress/COMMUNITY.md
EndlessSeeker b272f3a818 docs: add CNCF incubation review artifacts (#4177)
Signed-off-by: EndlessSeeker <1766508902@qq.com>
2026-07-22 18:09:49 +08:00

5.2 KiB

Higress Community

This document is the authoritative inventory of official Higress project communication channels, including channels used by its subprojects. Official technical and governance decisions are recorded in public GitHub issues, discussions, pull requests, or published meeting notes.

Public channels

Channel Scope and purpose
GitHub Issues Bug reports, feature requests, and work tracking for the primary repository
GitHub Pull Requests Public change proposals, reviews, and decision records
GitHub Discussions User questions, ideas, announcements, and longer-form community discussion
Discord Public real-time user and contributor chat; decisions arising there must be recorded on GitHub
Higress mailing list Community questions and contributor contact by email
Chinese-language community group Publicly advertised Chinese-language user and contributor chat
Higress WeChat Official Account Chinese-language technical articles and project announcements; broadcast rather than a decision channel
Higress website and documentation Published user and contributor documentation and project announcements

Each subproject uses its own public GitHub issues and pull requests for work specific to that repository:

Subproject Issues Pull requests
higress-console Issues Pull requests
higress-standalone Issues Pull requests
plugin-server Issues Pull requests
wasm-go Issues Pull requests

Cross-subproject and project-governance decisions are recorded in the primary Higress repository.

Non-public channels

Non-public channels are limited to reports whose confidentiality protects reporters or users:

Channel Special purpose
GitHub Private Security Advisories One of the two required confidential vulnerability-reporting channels; used for project triage, remediation, and disclosure coordination under SECURITY.md
Alibaba Security Response Center The second required confidential vulnerability-reporting channel; the same substantive report must be submitted here and correlated with the GitHub advisory by the Security Response Team
CNCF Code of Conduct reporting Confidential Code of Conduct incident reporting under CODE_OF_CONDUCT.md
CNCF TOC private mailing list Confidential escalation when project leadership cannot resolve a security or governance conflict without conflicted participants

Personal messages, employer-internal systems, and informal maintainer chats are not official project decision channels. If they inform project work, the non-sensitive decision and rationale must be recorded publicly.

Community meetings

Higress does not currently run a recurring public community meeting and does not yet have a CNCF calendar entry. Establishing an up-to-date public meeting scheduler and/or CNCF calendar integration is tracked as an Incubation readiness item in docs/cncf/governance-review.md.

When a recurring meeting is established, its schedule and joining information will be published here and on the CNCF calendar. Agendas, notes, recordings, and decisions will be public, with confidential security and Code of Conduct matters excluded.

Contributor activity and recruitment

Public, continuously updated evidence is available through:

Contributors can start through an issue, discussion, documentation update, bug fix, test, plugin, or other pull request. Maintainers and code owners recruit and mentor contributors through the public channels above and identify approachable work with contribution labels.