Hacker News new | ask | show | jobs
by progval 1494 days ago
For what it's worth, Debian packagers check signatures when downloading from PyPI.