• AndrewZabar@lemmy.world
    link
    fedilink
    English
    arrow-up
    4
    arrow-down
    1
    ·
    1 day ago

    Yes because it’s that simple. Every file online that’s not from some huge corporation is spyware. /s

    Some people are strange - we know what we’re doing, we know a site and whether they have a solid reputation, we have experience and can determine when we’re getting a safe file. Oh, and do you truly believe that the “official” sources don’t dole out spyware left & right? Don’t be this naive; It’s not as simple as you stated. That’s just the general carte blanche rule that experts tell ordinary users because if we didn’t, they would download crap from everywhere under the sun and load up on malware every day.

    • jagged_circle@feddit.nl
      link
      fedilink
      English
      arrow-up
      1
      ·
      23 hours ago

      Obviously you have no idea how bad x.509 is.

      The issue isnt just the developer. Its your connection. Thats why we have release signatures, and most repos on git dont have signed releases.

      • AndrewZabar@lemmy.world
        link
        fedilink
        English
        arrow-up
        1
        ·
        6 hours ago

        Well I was not really addressing the specific item that spawned this discussion thread, only the notion that was stated that one should only ever use the official stores.