|
|
|
|
|
by woodruffw
533 days ago
|
|
This would not be meaningfully addressed by namespaces, since there's no authoritative, authenticated unique name system across indices. Two separate indices can (and will, based on what ecosystems like piwheels do[1]) advertise `foo/*`-namespaced packages, leaving installers where they are today. (I think namespacing is a good idea regardless, if only because it eliminates artificial scarcity in a one-level namespace.) [1]: https://www.piwheels.org/ |
|
If you disagree I would love to hear of a concrete way that solution would be vulnerable.