On Fri, Sep 19, 2008 at 6:12 AM, Hiram Chirino <[EMAIL PROTECTED]> wrote: > How about we include the signatures in the source distros? That way > if you trust your source, then you can trust the dependencies it > downloads.
Eww. That'd be a giant gaping security hole. -- justin --------------------------------------------------------------------- To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]