|
|
|
|
|
by tntn
2556 days ago
|
|
1. The code you pull in will not get updated unless you do it explicitly. 2. The code you pull in will not get exploited when someone masquerades as the package owner. (How many widely publicized cases of this have there been by now, 5? 10?) 3. Presumably you read the code enough while copy-pasting to be sure it isn't mining Bitcoin or something. |
|