I had no idea this issue had been identified. While I find this tool very useful, the project is seeming rather questionable to me now.

  • @delirious_owl
    link
    212 days ago

    Aaaand thats why all commits should be signed with your pgp key

    • @kautau@lemmy.world
      link
      fedilink
      61 day ago

      It sounds like they weren’t using any form of version control, so that’s definitely on them at this point

      • @Alexstarfire@lemmy.world
        link
        fedilink
        131 day ago

        What makes you say that? To me, it sounds like that’s what they do have cause they tracked the change back to him. The commit message obviously said nothing about the file.

        • @kautau@lemmy.world
          link
          fedilink
          31 day ago

          Ah I could see that. I took it as them not knowing where the file came from at all, so they’re just asking all the devs who would have had access at that point, which is why it was “hey do you know anything about this file?” and not “is there a specific reason you committed this file to the build?”