Conversation
Notices
-
Embed this notice
寮 (ryo@social.076.ne.jp)'s status on Friday, 12-Aug-2022 07:22:26 JST 寮 yup.
No, you cannot trust third party code without reading it first
https://unixsheikh.com/articles/no-you-cannot-trust-third-party-code-without-reading-it-first.html-
Embed this notice
Wrongthink (wrongthink@cdrom.tokyo)'s status on Friday, 12-Aug-2022 07:55:36 JST Wrongthink @ryo This is exactly why I don’t touch python pip or rust cargo. It’s such a sloppy way to expect people to build your software. And now users are being asked to use entire side channel package management like FlATpack, or snap. If I were an ubuntu user I’d be heading for the hills right now.
寮 likes this. -
Embed this notice
寮 (ryo@social.076.ne.jp)'s status on Friday, 12-Aug-2022 07:57:23 JST 寮 @wrongthink If I were an Ubuntu user, I'd rather look for a different distribution, preferably to an independent distro (so not a derivative).
The only exceptions for derived distro's would be Devuan and Artix, since they're just Debian and Arch respectively with a different init system, beyond that they're exactly the same.
-
Embed this notice