Sure, and I want a pony. Nobody is going to buy me one though, so why discuss it? 
Huh, that's the first time I've seen a pro-repro person acknowledge literally any flaw in it. Let me ask you this, do you agree that you can eliminate the same SPOFs *today*? I understand the benefits of repro builds, do you understand the problems?
-
-
no, i don't understand how you can eliminate the builders-as-SPOFs without repro builds, and no, i don't see any downsides of repro builds for free software besides the engineering work required to get there.
-
OK, let me explain it for you. Remember, we're not discussing which solution is better (I'll get to that), just that it's possible. You already *have* to trust the source, and the system you're going to run the binary on, correct? Do you agree so far?
- 8 more replies
New conversation -
-
-
you're saying you can eliminate the SPOF by building software oneself, but i assume you aren't saying it would be practical for everyone to actually do this. i'm saying repro builds enable everyone's phones and laptops to stop relying on build SPOFs in a way that is practical.
-
You don't have to build it yourself, you can choose someone you trust to build it. That is required in your system too, how do you imagine users will verify the build can be reproduced? They nominate a trusted party to check.
- 7 more replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.