Comment on Gentoo Linux Begins Codeberg Migration In Moving Away From GitHub, Avoiding Copilot

<- View Parent
cecilkorik@piefed.ca ⁨17⁩ ⁨hours⁩ ago

I know this is probably sarcastic but honestly Gentoo’s great if you don’t trust binaries by default. Nothing is an absolute guarantee against compromise, but it’s an awful lot harder to compromise a source code repository or a compiler without anyone noticing (especially if you stick to stable versions) than it is to compromise a particular binary of some random software package. I trust most package maintainers, but they’re typically overworked volunteers and not all of them are going to have flawless security or be universally trustworthy.

I like building my own binaries from source code whenever possible.

source
Sort:hotnewtop