View Single Post
Posts: 1,224 | Thanked: 1,763 times | Joined on Jul 2007
#24
Originally Posted by Flandry View Post
The security is only as good as the testing. Your root-formatting package would not last a day in -testing. That's the whole point; thank you for making it.
You are wrong.

All I need to do is write an actual application, jump through all the loops to get it to extras, and make sure it includes a code that does if(date==03/03/10)delete_all_files. If this code is somewhat obscure (or the application is not free), there is no chance that someone will discover it before it actually does it.

But this is irrelevant anyway. HAM allows repositories with no testing at all, so why not allow local packages?