Hacker News new | ask | show | jobs
by brigandish 1951 days ago
That's a good point. Is there some kind of time lag between the builds and the repo updates? If there's not time for anyone to check the code then the door is still slightly open for malicious code to enter the store without scrutiny.