I had no idea this issue had been identified. While I find this tool very useful, the project is seeming rather questionable to me now.

You are viewing a single thread.
View all comments View context
26 points

Aaaand thats why all commits should be signed with your pgp key

permalink
report
parent
reply
10 points

It sounds like they weren’t using any form of version control, so that’s definitely on them at this point

permalink
report
parent
reply
18 points

What makes you say that? To me, it sounds like that’s what they do have cause they tracked the change back to him. The commit message obviously said nothing about the file.

permalink
report
parent
reply
5 points

Ah I could see that. I took it as them not knowing where the file came from at all, so they’re just asking all the devs who would have had access at that point, which is why it was “hey do you know anything about this file?” and not “is there a specific reason you committed this file to the build?”

permalink
report
parent
reply

Open Source

!opensource@lemmy.ml

Create post

All about open source! Feel free to ask questions, and share news, and interesting stuff!

Useful Links

Rules

  • Posts must be relevant to the open source ideology
  • No NSFW content
  • No hate speech, bigotry, etc

Related Communities

Community icon from opensource.org, but we are not affiliated with them.

Community stats

  • 3.3K

    Monthly active users

  • 1.2K

    Posts

  • 10K

    Comments