Y
Hacker News
new
|
ask
|
show
|
jobs
by
rbanffy
1680 days ago
The part that made sure the user could update the package could have at least check if the payload is about that package before passing it to the service that trusted it.