[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Official Debian digital 'branding' of debs



Ok.. I agree, but:

>  c) You trust the debian developer team (since they are the ones who
>     are creating the packages.

 I'd like to bring this issue.

 I've always thought that we need to migrate to autobuild everything,
because of security.

 I don't like the current status when a maintainer can upload a binary that
doesn't match the source. If we had an autobuild daemon for everything, we
could audit everything... sbdy could check from backdoors in every source
file.. but now that's imposible...


Reply to: