Linked by Thom Holwerda on Sun 7th Aug 2005 12:20 UTC, submitted by bsnipes
Thread beginning with comment 15730
To view parent comment, click here.
To read all comments associated with this story, please click here.
To view parent comment, click here.
To read all comments associated with this story, please click here.





Member since:
Firstly - one must put an execute bit AFAIK on anything to make it executable.
>>Even those of us who try to keep up will at some point have to TRUST something. Maybe those in the know trust less, but still, at some point, you trust the distro you just installed is clean and the package maintainer did not put in some goodies. <<
Not this is a half decent point - if we were not talking about open source.
But we are talking about OPEN SOURCE repositories.
The TRUST bit comes about because Open Source says "SHOW ME THE CODE" !!!!
Everybody who might want to use the repositories can see the code if they want to. Many who do use the code (including those who maintain the repositories) and who did not write the code are nevertheless perfectly capable of seeing how it works. This is the very heart and soul of Open Source.
Those who have the skills to know what they are examining have seen the code and they use it themselves - therefore it contains no malware.
That is the guarantee of Open Source.