Approval group members are not visible to MR creator, if they do not have membership (or inherited membership) of that group
Everyone can contribute. Help move this issue forward while earning points, leveling up and collecting rewards.
Full report by @jweaver-strive: #255981 (comment 1029916923)
I have the following:
top level group:
-- saml groups:
-- Developers
-- Security Approvers (direct membership only)
-- projects group:
-- example project
-- Developers: Developer perm
-- Security approvers: Developer perm and approvers for Scan Results policy
In my situation, there is no direct nor inherited membership for the Developers as pertains to the Security Approvers
group. This results in a empty list of approvers when a Scan Results policy approval is triggered.
What would be the best way to get the Developers
visibility into who the Security Approvers
are?
So, generally... there are user groups specifically used for SAML Group Link, and those user groups are then assigned to either projects, or groups containing projects.
My desire isn't to add more members to the Security Approvers group, but rather to permit those who are not a member of the group to still be able to view potential Approvers in their MRs.
To get around the lack of visibility into approvers, my thought was to simply direct users to post in a Slack channel, but that is not ideal.
Consider making the proposed behaviour opt-in, since it allows leaking group membership (see #368487 (comment 2082102454))