)]}'
{
  "commit": "ddfef04b8d39d9f9aed5a87c56f37403f0afc358",
  "tree": "07d548a6aaa67b8da4afb748518b49d18c7b7a0c",
  "parents": [
    "5e69b3b9468b298bd36839ce394dcee692e6e1ce"
  ],
  "author": {
    "name": "Filippo Valsorda",
    "email": "filippo@golang.org",
    "time": "Wed Sep 25 22:52:33 2019 +0000"
  },
  "committer": {
    "name": "Filippo Valsorda",
    "email": "filippo@golang.org",
    "time": "Wed Nov 13 22:08:31 2019 +0000"
  },
  "message": "Cleanup access permissions\n\n1) Remove most gerritbot permissions. gerritbot should only need the ability\nto forge, beyond what everyone has.\n\n2) Remove admin permissions. It doesn\u0027t add any security because we can\nstill edit the settings, but it prevents us from doing damage by mistake.\n\n3) Fix a couple of over-broad scopes, and places where release-managers\n(which ideally would be smaller) was used in place of osp-team.\n\n4) may-remove-reviewer just contains approvers, remove the indirection.\n\n5) Delete the nobody group. If we need to escalate permissions, we\nshould do it with scoped groups like may-force-push and release-managers.\n\n6) Override the default letting anyone add patch sets to anyone else\u0027s CLs.\nhttps://gerrit-review.googlesource.com/Documentation/access-control.html#category_add_patch_set\n\nChange-Id: I1b19d01818de9ae26ee05ce2ccc0b99214990ea3\nReviewed-on: https://go-review.googlesource.com/c/All-Projects/+/197301\nReviewed-by: Andrew Bonventre \u003candybons@golang.org\u003e\n",
  "tree_diff": [
    {
      "type": "modify",
      "old_id": "78f6e71fdb356f6d28e6e19ba22e8cc3efcfbabe",
      "old_mode": 33188,
      "old_path": "groups",
      "new_id": "c0c882aad9f9f2b571ce17d3f8e47803cdb2ea21",
      "new_mode": 33188,
      "new_path": "groups"
    },
    {
      "type": "modify",
      "old_id": "fcdb289dd1e68951eee1d3c305994a6e9dad4b21",
      "old_mode": 33188,
      "old_path": "project.config",
      "new_id": "0f0c8f93638478e21d516217727d9d9ca72f4a06",
      "new_mode": 33188,
      "new_path": "project.config"
    }
  ]
}
