[Owasp-board] Please Update AoC review page

Dave Wichers dave.wichers at owasp.org
Wed Jan 31 01:40:44 UTC 2007

I don't think making any public negative comments is helpful. If we want to
gently nudge the person to finish or continue to work on it so we get what
we were expecting, that would be fine I think but I wouldn't invest a huge
amount of energy that way if they aren't being cooperative.  I think we
should overall indicate it was a great success and do it again soon :-)


I think awarding the good ones, and avoiding those that didn't cut the
mustard is the right thing to do.





From: owasp-board-bounces at lists.owasp.org
[mailto:owasp-board-bounces at lists.owasp.org] On Behalf Of Dinis Cruz
Sent: Tuesday, January 30, 2007 6:45 PM
To: owasp-board at lists.owasp.org
Subject: Re: [Owasp-board] Please Update AoC review page


Jeff's comments below, actually raise an important question, how 'accurate'
should we be on public AoC's reviews?

i.eu. if somebody doesn't deliver as much as we wanted, shold we publicly
mention it or keep those details to us. 

Lets see what happened with the AoC projects

AoC 13 Rogan      (WebScarab NG)       - Very over ambitions brief, but
delivered a good version of WebScarab  NG
AoC 04 Joshua     (Live CD)                  -  Haven't seen the final
version, but looks like it will be a good delivery 
AoC 17 Chris     (CAL9000)                  -  Lots of 'behind the scenes
work', could had done more to integrate it with OWASP's content and
branding. But good delivery
AoC 09 Mike     (SiteGenerator and ORG)  - Lots of work and bug fixes. In
par with was was expected 
AoC 21 Simon     (Pantera)                       - New version with tons of
new features  In par with was was expected (so he under-delivered)
AoC 24 Sherif     (Web Goat)                    - Delivered on lessons, but
as jeff says below, lessons are prety weak 
AoC 26 Matteo     (Testing Guide)             - Delivered a great piece of
work, and I would say he over-delivered
AoC 18 Boris     (Owasp .Net Tools)          - Worked really hard in the
integration of these tools (into a tool what will be called OWASP Tiger). So
I would also say he also over-delivered (which should be confirmed when the
final version is released) 
AoC 07 Aaron     (Owasp Website)           - Started very well. But failed
to fulfill his potential, so I would say he under-delivered

Out of the 9 projects, we have 5 solid deliveries, 2 above average and 2
below average. But all projects moved forward :) 

So I guess one way we can reward the ones that did good deliveries is to
give them a SpoC sponsorship (if they apply for one) , and the way we don't
reward the less-than-good deliveries, is to not give them a SpoC sponsorship
(if they apply for one) 


On 1/30/07, Jeff Williams <jeff.williams at owasp.org> wrote:

Hi Dinis,


I haven't been able to get to this. WebGoat is done (new lessons are pretty
weak tho) and WebScarab is done enough (I guess).






From: Dinis Cruz [mailto:dinis at ddplus.net] 
Sent: Friday, January 26, 2007 8:51 AM
To: Andrew van der Stock; Jeff Williams; Eoin
Subject: Please Update AoC review page


Hey, can you guys ASAP update your projects on

This is what is holding on payment for the following projects that have
already been completed:

*	Cal9000
*	SiteGenerator and ORG
*	WebGoat
*	Testing Guide
*	Owasp Website
*	WebScarab NG (Jeff you can make this one complete, just make a note
saying that althogh rogan didn't de

The projects that are not completed at the moment, but are almost there are:

*	LiveCD
*	Pantera 
*	Owasp .Net tools

Dinis Cruz
Chief OWASP Evangelist, Are you a member yet?

Dinis Cruz
Chief OWASP Evangelist, Are you a member yet?

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.owasp.org/pipermail/owasp-board/attachments/20070130/27f8ac3e/attachment-0002.html>

More information about the Owasp-board mailing list