Le Tue, Jun 17, 2025 at 07:59:42AM -0400, Theodore Ts'o a écrit :
> 
> Can we say that the Debian package maintainers are reviewing their
> pull requests at *least* as rigorously as kernel maintainers?  We had
> better hope so, because Debian package scripts get run as root

By the way I wish there were as simple mechanisms to signal to all users (not
just developers) whether a Debian package has maintainer scripts or not, and
issuing a warning when the upgrade of a third-party package adds a new
maintainer script.  Maybe a different media type?  File browser icon could be
different, the output of `file` could tell it, and I am sure that even better
solutions can be found.

Have a nice day,

Charles

Reply via email to