View Single Post
Posts: 2,802 | Thanked: 4,491 times | Joined on Nov 2007
#294
Originally Posted by lemmyslender View Post
There must be some community discussion in every case. I think we can agree that:

Developer A bypasses the QA system to make money faster is bad.
Developer B bypasses the QA system to steal passwords is much worse.
Developer C bypasses the QA system to brick devices is even worse.
Actually, I consider B to be much worse than C, since I can recover from C by reflashing and the damage is contained to the data on the device. In case B the malicious developer could do unlimited damage until the problem is discovered and the passwords changed.

Do they all get the same announcement "Developer bypassed the QA system and software has been removed."?

Or do Developers B and C get a more detailed announcement? So that the community is aware they were acting in a very anti-social manner?
There are various degrees of severity. Bypassing the QA system is one thing, to be dealt with by the community however we decide.

Stealing passwords or intentionally bricking devices however is a clear-cut criminal matter and law encforcement should be involved.

B & C should get a more detailed announcement to at least explain to affected users the repercussions of installing the affected software and how to recover if possible.
 

The Following User Says Thank You to lma For This Useful Post: