This is very true. Once you get used to the Arch model: everything up to date, no big release upgrades, AUR, everything else seems inferior.https://twitter.com/burntsushi5/status/1222225990728003587 …
-
-
Replying to @wezm
I really dislike the Arch packaging style. Feels ad hoc, unorganized and cluttered. After being on rolling releases a while I've really come to appreciate stability over rolling, especially when working. Besides, to get benefit of rolling you often need to reboot
2 replies 0 retweets 1 like -
Replying to @flukejones @wezm
My understanding is that arch developers build package binaries in their own machines, that is a malware injection problem waiting to happen if true.
2 replies 0 retweets 0 likes -
Replying to @acruiz @flukejones
Hmm I think a lot of security stuff is overblown for the average threat model and causes all sorts of busy work for theoretical issues. The project has worked fine nearly 2 decades. If issues arise I’ll reevaluate then.
1 reply 0 retweets 0 likes -
Replying to @wezm @flukejones
The problem is that with such lack of auditability, it is rather hard to know if something has happened or is happening already.
2 replies 0 retweets 2 likes
I can’t find a lot of details on how packages are built but I have found references to a build server. There’s also an effort to implement reproducible builds. https://wiki.archlinux.org/index.php/DeveloperWiki:ReproducibleBuilds …
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.