4 ms·
You'd probably still want a centralized repo of checksums, otherwise it may be more difficult to verify the authenticity of the packages
by creatornator 7y ago
You'd probably still want a centralized repo of checksums, otherwise it may be more difficult to verify the authenticity of the packages
- thedevindevops 7y agoThat still wouldn't guarantee that the package contents isn't malicious