logoalt Hacker News

woodruffwlast Saturday at 6:31 PM1 replyview on HN

Both CPython and distributions on PyPI are more effectively signed than they were before.

(I think you already know this, but want to relitigate something that’s not meaningfully controversial in Python.)


Replies

LtWorflast Saturday at 7:50 PM

Being signed by some entity which is not the author is hardly more effective.

(I think you already know this as well)

show 1 reply