• Possibly linuxOP
    link
    fedilink
    English
    198 months ago

    I think we need focus on zero trust when it comes to upstream software

      • Possibly linuxOP
        link
        fedilink
        English
        18 months ago

        It is fine to use them just know how they work and check the commit log.

        That of course requires you to pull from got instead of a tarball