Hacker News new | ask | show | jobs
by matheusmoreira 1691 days ago
PyPI allowed me to make an account and just push packages there like it was nothing. Great for me, not so great for users.

These Debian wrappers, however minimal, imply the existence of a maintainer trusted by the Debian community. It's assumed that this maintainer has read the source code and determined it is safe.

1 comments

Or at least pinned a version that is known good