• CubitOom@infosec.pub
    link
    fedilink
    English
    arrow-up
    3
    ·
    2 hours ago

    I’m not entirely sure I agree, I think the issue is with default settings.

    Like you could use both yay and paru to diff the PKGBUILD of the most recent updat and then read it, and then approve each. And I think that’s pretty helpful. But you could also just blindly accept the update with the right config or flag and that is not a good practice.