The open-source operating system Debian is now debating a thorny question. It concerns using AI models to submit code and other contributions. The vote remains in its discussion phase, which opened on 24 July 2026, and no final result has emerged.
The core issue is straightforward. Should Debian keep allowing developers to use generative AI tools in Debian-related contributions?
The public vote page shows four distinct proposals. Their positions range widely, from a total ban on AI-assisted contributions to permitting them under strict accountability and disclosure. Clearly, the open-source community remains deeply split on AI-generated code and documentation.
Proposal A: Ban AI-Assisted Contributions Entirely
Proposal A is the strictest. It would explicitly forbid any direct contribution written, generated, or substantially assisted by AI models or generative AI tools. The scope is broad, covering Debian source packages, official software, website resources, documentation, translations, and official communications.
Its rationale spans copyright, quality, community, and ethics. Supporters argue that the copyright and licensing status of AI output stays unclear, so it may smuggle in copyrighted material from training data. They also note that AI models often generate errors. Debian prizes stability and reliability, so it cannot shift a heavy review burden onto its maintainers.
The proposal raises another worry too. New contributors who lean on AI-generated content may never truly understand Debian’s packaging rules and maintenance workflow. Consequently, review burdens grow, maintainer burnout follows, and the whole project suffers.
Proposals B and D: Allow AI, but Hold Contributors Responsible
Proposal B takes the opposite stance. It would permit AI-assisted contributions, yet it attaches several conditions. Contributors must confirm that the AI tool’s terms do not compromise Debian’s distribution and modification rights. They must check the output for third-party copyrighted material. Above all, they bear full responsibility for technical quality, security, license compliance, and usefulness.
Proposal B adds a disclosure rule. When a significant part of a contribution is AI-generated or clearly AI-assisted, the contributor should say so, for instance with a Generated-By or Assisted-By tag in the commit message. Furthermore, batch or automated contributions should be discussed in advance and supervised by a human.
Proposal D thinks along similar lines. Debian would neither recommend nor endorse generative AI development, yet it acknowledges that such tools already exist. Rather than ban them outright, it asks contributors to understand, evaluate, and explain what they submit. It would also prohibit sending non-public or sensitive Debian project information to cloud AI tools for processing.
Proposal C: Discourage AI, but Concede a Total Ban Is Unrealistic
Proposal C sits between permission and prohibition, though it leans against AI-generated content overall. It asks Debian contributors to avoid AI in their Debian work wherever possible. At the same time, it urges Debian decision-makers to discourage such use as much as they can.
Even so, Proposal C admits a practical truth. Upstream projects and the wider software industry already use AI extensively, so banning every trace of AI output from Debian is unrealistic.
Therefore, it proposes more specific limits. Human-facing messages, such as bug reports, mailing-list discussions, Salsa threads, and Planet Debian blog posts, should be written entirely by humans without AI assistance. Meanwhile, any AI use in Debian work must be disclosed.
One detail stands out. Proposal C would also let individual projects and maintainers ban AI contributions entirely, and it requires other contributors to respect such bans.
Support Our Threat Intelligence
If you find our CVE report and cybersecurity news helpful, consider supporting our work.