Hacker News new | ask | show | jobs
by rhn_mk1 2285 days ago
If browsers supported it, then it could be done much the way Linux distro packages work: include a signature from a trusted party together with the code, as a guarantee of being verified to match some standard (e.g. same as CI, or not malicious).