On Mon, Oct 04, 2021 at 10:10:35AM -0700, Kevin Fenzi wrote: > On Mon, Oct 04, 2021 at 10:57:42AM +0200, Vít Ondruch wrote: > > Thoughts? > > I like the idea! > > We can block such a package from ever appearing in a compose in pungi. Is this really necessary? The package will not be open to anyone, but only for approved contributors. Malicious behaviour is not more likely then in any other package (and would be immediately caught). I think we're thinking up technical solutions to something that is not a problem. Zbyszek _______________________________________________ devel mailing list -- devel@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to devel-leave@xxxxxxxxxxxxxxxxxxxxxxx Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/devel@xxxxxxxxxxxxxxxxxxxxxxx Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure