# Reviving sustain.md

**URL:** <https://discourse.sustainoss.org/t/reviving-sustain-md/120>\
**Category:** Volunteer Health\
**Created:** [December 19, 2018, 10:53pm UTC](https://discourse.sustainoss.org/t/reviving-sustain-md/120 "2018-12-19T22:53:50Z")\
**Posts on this page:** 7\
**Page:** 1

<div class="post-metadata">

**Author:** ![jdorfman](https://yyz2.discourse-cdn.com/flex032/user_avatar/discourse.sustainoss.org/jdorfman/32/14_2.png) [@jdorfman](https://discourse.sustainoss.org/u/jdorfman)\
**Post date:** [December 19, 2018, 10:53pm UTC](https://discourse.sustainoss.org/t/reviving-sustain-md/120/1 "2018-12-19T22:53:50Z")

</div>

After finishing the 1st draft of the [manifesto](https://github.com/sustainers/sustain.md/blob/master/manifesto.md)¹ with @GeorgLink I decided to start cranking on [sustain.md](https://github.com/sustainers/sustain.md). Right now it’s just a skeleton and I guess I am looking for comments/suggestions, etc.

Grand vision would be if a maintainer got severely hurt, sick, or died; GitHub, npm, (or whatever platform) would be able to grant access to a trusted person² who is capable of keeping things afloat until someone else (or company/org) can completely take over.

[Security.txt has an RFC](https://tools.ietf.org/html/draft-foudil-securitytxt-04), not sure if that would be necessary, although I always wanted to _help_ write an RFC. `¯\_(ツ)_/¯`

So I ask you, fellow sustainers, is this a road worth going down?

¹ not sure if that is the name we are keeping yet  
² not everyone has a GitHub or npm account, I know hard to believe but it’s true.

---

<div class="post-metadata">

**Author:** ![GeorgLink](https://yyz2.discourse-cdn.com/flex032/user_avatar/discourse.sustainoss.org/georglink/32/19_2.png) [@GeorgLink](https://discourse.sustainoss.org/u/GeorgLink)\
**Post date:** [December 20, 2018, 2:14pm UTC](https://discourse.sustainoss.org/t/reviving-sustain-md/120/2 "2018-12-20T14:14:11Z")

</div>

I like the idea of standardizing how a community can make itself more sustainable.

A sustain.md file can be one standardized component. Yes, an RFC for that would be great because it invites a grand discussion, spreads the idea, invites much needed feedback, and helps revise and refine the standard.

On a larger picture, the sustain.md is only one best practices. It lacks a larger incentive system and there are other best practices. To separate the discussion around best practices, I started a thread on the idea of a [Sustainable Best Practices Badge](https://discourse.sustainoss.org/t/idea-sustainable-best-practices-badge/124/2) and wrote a [blog post about it](http://www.georglink.de/2018/12/20/idea-sustainable-best-practices-badge--772).

---

<div class="post-metadata">

**Author:** ![GeorgLink](https://yyz2.discourse-cdn.com/flex032/user_avatar/discourse.sustainoss.org/georglink/32/19_2.png) [@GeorgLink](https://discourse.sustainoss.org/u/GeorgLink)\
**Post date:** [December 21, 2018, 6:26pm UTC](https://discourse.sustainoss.org/t/reviving-sustain-md/120/3 "2018-12-21T18:26:03Z")

</div>

A few thoughts on sustain.md, posing the question: does it make sense to create a separate file?

First, @jdorfman kicked off development on it here: [https://github.com/sustainers/sustain.md/pull/6](https://github.com/sustainers/sustain.md/pull/6)  
Information we started with:

- Who is maintainer and what is the bus factor.
- Where is funding coming from and how can one donate.

Second, what other information should a project provide in sustain.md to convince anyone that it is sustainable. (maybe not all of it belongs in the sustain.md but rather a [badge](https://discourse.sustainoss.org/t/idea-sustainable-best-practices-badge/124?u=georglink))? Every idea that I come up with, I dismiss because there is a different place for this information. E.g. Code of Conduct best lives in its separate CODE\_OF\_CONDUCT.md file; What issue tracker to use lives in CONTRIBUTING.md; how to report software vulnerabilities lives in SECURITY.txt. …

Bringing these two thoughts together: Does it make sense to introduce yet another file or should we promote inclusion of our desired information within existing files?  
Who the maintainers are would well fit within the README or CONTRIBUTING, same with how to contribute financially.

---

<div class="post-metadata">

**Author:** ![jdorfman](https://yyz2.discourse-cdn.com/flex032/user_avatar/discourse.sustainoss.org/jdorfman/32/14_2.png) [@jdorfman](https://discourse.sustainoss.org/u/jdorfman)\
**Post date:** [December 21, 2018, 7:35pm UTC](https://discourse.sustainoss.org/t/reviving-sustain-md/120/4 "2018-12-21T19:35:20Z")

</div>

> [@GeorgLink](#):
>
> Bringing these two thoughts together: Does it make sense to introduce yet another file or should we promote inclusion of our desired information within existing files?

I can sympathize that, I personally like to keep as much out of the root directory as possible. With that said, I also believe int he Unix philosophy, and appending this information to another doc does it a disservice. Case in point, look at the [webpack README](https://github.com/webpack/webpack/blob/master/README.md). It’s huge! If they adopted `sustain.md` and put it at the bottom of their README then how many people would miss it?

Not sure if webpack is the best example, I think the target market is for these types of “low bus factor” projects: [https://libraries.io/experiments/bus-factor](https://libraries.io/experiments/bus-factor)

---

<div class="post-metadata">

**Author:** ![GeorgLink](https://yyz2.discourse-cdn.com/flex032/user_avatar/discourse.sustainoss.org/georglink/32/19_2.png) [@GeorgLink](https://discourse.sustainoss.org/u/GeorgLink)\
**Post date:** [December 22, 2018, 6:55pm UTC](https://discourse.sustainoss.org/t/reviving-sustain-md/120/5 "2018-12-22T18:55:51Z")

</div>

> [@jdorfman](#):
>
> If they adopted `sustain.md` and put it at the bottom of their README then how many people would miss it?

I recognize the benefits of the UNIX philosophy. The discoverability of the information is a major concern that we indeed fix with a separate file. It would also be easier to automatically identify whether a project is providing the information (does file exist?).

---

<div class="post-metadata">

**Author:** ![jdorfman](https://yyz2.discourse-cdn.com/flex032/user_avatar/discourse.sustainoss.org/jdorfman/32/14_2.png) [@jdorfman](https://discourse.sustainoss.org/u/jdorfman)\
**Post date:** [December 22, 2018, 7:16pm UTC](https://discourse.sustainoss.org/t/reviving-sustain-md/120/6 "2018-12-22T19:16:09Z")

</div>

> [@GeorgLink](#):
>
> It would also be easier to automatically identify whether a project is providing the information (does file exist?).

Another great reason to keep it separate.

---

<div class="post-metadata">

**Author:** ![Beanow](https://yyz2.discourse-cdn.com/flex032/user_avatar/discourse.sustainoss.org/beanow/32/135_2.png) [@Beanow](https://discourse.sustainoss.org/u/Beanow)\
**Post date:** [April 5, 2019, 10:17am UTC](https://discourse.sustainoss.org/t/reviving-sustain-md/120/7 "2019-04-05T10:17:18Z")

</div>

On the subject of funding. Rather than just the source of funding, maybe refer in the same breath where to find financial information. Listing sources doesn’t make it sustainable if it boils down to 0.1% of minimum wage being donated. 😄

Also, I think any properties that make sense to list in such a sustain.md file may be issues to look at tooling and or communities that can help here. For example, what can you do when your small open source project takes off? Could there be escrow tools for sharing deployment keys?

A simple learn more link might help when trying to to spread this practice.
