|
|
|
|
|
by BobbyTables2
46 days ago
|
|
I hate the online repos. Sure it’s nice to have good libraries accessible. But is there any quality control against malicious packages? Or will one day some obscure “Unicode homograph” library end up pwning half the world because it was a dependency 10
layers deep for an optional but default-enabled feature that nobody cares about. Things like Visual Studio’s extension marketplace really acare me. It’s too easy to install Jim Bob’s “starter pack” of extensions that bundles many well known ones with an unheard of one… Or install the wrong “Python” extension because there are 20 with the same icon… |
|