potiuk commented on PR #841: URL: https://github.com/apache/solr-operator/pull/841#issuecomment-4991063167
Thanks, Houston — this is exactly the maintainer input the draft needed, and all five are clear corrections. I've folded them into the PR: - `SECURITY.md` → contact is now `[email protected]`. - `THREAT_MODEL.md` → notes the operator can be installed **namespace-scoped** (not only cluster-wide); the `ClusterRole` / `Role` distinction is fixed at both call-sites (`Role` when watching specific namespaces); and your out-of-scope item — pass-through Kubernetes options copied verbatim onto the dependent StatefulSet/Service/Pod/etc. — is added to §3. On the "no review has been done" note: that's a provenance marker — draft claims start tagged `*(inferred)*` until a maintainer confirms them. Your review is exactly that confirmation, so I've flipped the claims you reviewed to `*(maintainer)*` and credited your 2026-07-15 review in the status line + provenance legend. So from here it's yours: a final look and merge whenever you're happy — that's the one thing that gets the Operator discoverable for the scan. You don't need to make any further edits unless you spot something else. Thanks again — the namespace-scoped and RBAC corrections especially are the kind of thing only a maintainer would catch. -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: [email protected] For queries about this service, please contact Infrastructure at: [email protected] --------------------------------------------------------------------- To unsubscribe, e-mail: [email protected] For additional commands, e-mail: [email protected]
