Bonum Certa Men Certa

Debian Conflict of Interest Register

posted by Roy Schestowitz on Mar 13, 2024,
updated Mar 13, 2024

Reprinted with permission from Daniel Pocock.

Does Debian need a Conflict of Interest register?

People have asked for it several times. Cabal members have always refused.

Over the last few years, I've had various questions from people about how much they can really trust certain people in Debian.

Vigilantes claim to have a Code of Conduct for Debian. But a Code of Conduct is worthless without any process for managing Conflict of Interest. Last weekend the DebConf8 room allocation data was published somewhere on the Internet and this gives some scary insights into Conflict of Interest.

Privacy of accommodation data

Most people would assume that a data set like this is somewhat private and an organization like Debian would be competent in keeping it private.

Maintaining the privacy of the data requires both technical and social best practice. As we saw in the evidence about Debian harassment culture being a factor in suicides, it isn't the best social environment. A poor social environment is going to struggle to maintain effective privacy.

In relation to the privacy of DebConf personal data, one of the most glaring lapses came with the Albanian scandal. The former Debian Project Leader, Chris Lamb, first visited Albania in 2017. One of the women spent two years visiting events with Lamb. She was seated next to Lamb at the DebConf19 dinner in Brazil. Eight weeks later, she was selected for a $6,000 Outreachy internship.

When you look at the photos and travel itineraries, there is no evidence that the woman did anything wrong. There is a strong hint that Chris Lamb was smitten with this girl. All the rules on funding were relaxed.

When they gave the woman the Outreachy placement, she writes that she had to begin learning Git and at the same time, they simply gave her access to the DebConf Git repository. The repository contains a lot of private information about participants throughout the whole history of DebConf.

I do not believe this woman is any less trustworthy than any other volunteer. On the other hand, the ease with which Lamb gave a smiling newcomer access to this data and the manner in which funding rules were violated suggests that Debian security has some soft spots.

DebConf8 bed allocation: a fresh perspective on DebConf6 violence

A few weeks ago, I wrote about the manner in which two volunteers, Moray Allan and Holger Levsen, allegedly assaulted and physically expelled Ted Walther from DebConf6.

The summary of the incident includes the following text:

At this point Holger and Moray, as mentioned above, manhandled Ted across the dining hall to the door, where they were intercepted by John.

In my subsequent blog about the topic, I published an email from Amaya Rodrigo Sastre where she appears to be justifying violence towards Mr Walther, the victim:

I explained to her that what was going on had nothing to do with her, that it was a problem with Ted and that I believed Ted was a dangerous person and that she should be careful.

Amaya's defamatory emails have been made available to over 1,000 Debian Developers who have had access to the debian-private archives. 16 years have passed. Many people will not know or remember that Amaya had a conflict of interest.

In fact, Amaya had a relationship with Holger, one of the aggressors. She was writing these emails to disparage Mr Walther and take the pressure off her unstable boyfriend.

The relationship appears to be confirmed in the DebConf8 room list, here we see Amaya and Holger sharing a room:

Amaya Rodrigo Sastre, Holger Levsen, Margarita Manterola, Maximiliano Curia, Damian Viano, Martina Ferrari, Gregor Herrmann

Amaya could have added a disclaimer to her emails to declare a conflict of interest but she didn't do so. How can we ensure that people who see her emails in future will be aware of this vital fact?

Another thing to notice in the room list is that Margarita Manterola and Maximiliano Curia were able to share a room. Marga is the Google employee who sent me a hideous email telling me that Carla was not welcome to share the food at DebConf. Looking at the DebConf8 room list, we can see that these people behave like the pigs in Animal Farm. George Orwell has simplified the Code of Conduct down to just one sentence:

All animals are equal but some animals are more equal than others

This is significant for all users and contributors to Debian. This type of toxic social phenomena creates friction against innovation, it undermines privacy and it undermines security of the final software product.

Please see some of my other pages about how Outreachy fell into disrepute.

Other Recent Techrights' Posts

European Patent Office Management Mocked for Trying to 'Bribe' Staff With a Little Food
The Office is having a crisis; a little breakfast treat won't solve it
The Corporate Media Intentionally Overlooks How Google's Debt Trebles in Just Over a Year
We'll soon see how much more money Microsoft has borrowed
(Trigger Warning) Jeremy Bicha & Debian-Edu, TecKids, Ubuntu incest scandal at DebConf25
Reprinted with permission from Daniel Pocock
The Corrupt Lecture the Non-Corrupt - Part X - Deliberately Violate European Patent Convention (EPC), Tolerate Cocaine Use in Management, Hide That From Staff and Stakeholders
The "Alicante Mafia" (as staff calls it) is a disgrace to Europe
Apparently Last Day for Nearly 1,000 Confluent Workers IBM Laid Off Last Month
IBM is a dying company pretending to be strong because of its age
 
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, April 30, 2026
IRC logs for Thursday, April 30, 2026
Microsoft Debt Rose Almost $50 Billion Since We Moved to Debian
GAFAM has a new name for debt
Google News Sloppy Again
Today was disappointing
SLAPP Censorship - Part 62 Out of 200: Garrett and Graveley Issue Astounding Copy-Paste Masterpiece Asserting Publicly-Accessible Embarrassing Facts Must Remain Hidden
Are Garrett and Graveley twins separated at birth but joined by GNOME and Microsoft?
Links 30/04/2026: Barrage of Lawsuits Against Slop, Microsoft's Stock Crashes
Links for the day
Microsoft Says Mass Layoffs Are Coming and Puts a Price on Them
Microsoft will shrink
Upgrade Successful
we had a downtime of only 1-2 minutes overall (for two reboots)
Links 30/04/2026: Slop Industry Cannot Keep Up With Bills, "The World Is Getting Too Hot to Feed Itself"
Links for the day
Then Come the DDoS Attacks
Is someone trying to 'kill' Techrights?
The Register MS Running Spam Pieces for Huawei, a Banned Company
Money does not excuse bad behaviour
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, April 29, 2026
IRC logs for Wednesday, April 29, 2026
Gemini Links 30/04/2026: Outdoor Time, Old Computers, and Joining Geminispace
Links for the day
In Past 6 Months IBM Lost About 100 Billion Dollars in 'Value' While Debt Ballooned to 70 Billion Dollars
Welcome to a universe of fake finances and phony accounting based on fictional assets with made-up 'worth'
Dr. Andy Farnell on Weaponising Morality Against Technofascism and Slop
It's longer than a "tweet", so social control media addicts are likely mentally unfit to read it
Six Months
Techrights will be around (and active) for a very long time to come
If We Move Everything to Devuan...
IRC, Git, Apache and so on
Why We Publish "The Corrupt Lecture the Non-Corrupt"
We intend to report the facts, fearlessly, until real and lasting solutions are reached
SLAPP Censorship - Part 61 Out of 200: Garrett and Graveley Must Understand That Reporting Women's Issues in the United States of America (“the US”) is Not Impermissible
when you cover Microsoft corruption and have real effect
Weeks After Mass Layoffs of Red Hat Engineers We Learn of European "Buyouts" and Layoffs at IBM
At Microsoft, they tell us there are merely "buyouts", but they don't tell us what happens if you say "no!"
OS Upgrade Tentatively Scheduled for Tomorrow
We have some contingencies in case the upgrade goes wrong
Campinos is a Lame Duck President This Year at the European Patent Office (EPO)
The strikes are not ending. If anything, they intensify further.
Links 29/04/2026: LLM Chatbot Usage Goes Down Sharply (as Do Stocks Associated With Them), Microsoft's Circular Financing Accounting Fraud at Risk
Links for the day
Gemini Links 29/04/2026: Returning to an Exodus and Farewell APU
Links for the day
Slop Has a Long Way to Go Before It Gets Basic Facts Right
Please do not rely on slop for anything
The Corrupt Lecture the Non-Corrupt - Part IX - European Patents That Are Illegal (But Serve Non-European Monopolists in Exchange for 'Quick Cash')
People who shamelessly violate the European Patent Convention (EPC) have the audacity to lecture workers on "ethics"
Canonical is Selling You, Ubuntu is a Data-Collecting Platform
Canonical is looking for money in the wrong places
Links 29/04/2026: "Snowden Affair 13 Years Later" and "Landmark Data Center Pause"
Links for the day
Seems Like Only Techrights Covered IBM Laying Off About 33% of Confluent Staff
How can such a large round of layoffs evade today's media?
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Tuesday, April 28, 2026
IRC logs for Tuesday, April 28, 2026
Gemini Links 29/04/2026: Bad Diet, New Middle Ages, and Temperature Model
Links for the day