logoalt Hacker News

vlovich123yesterday at 3:00 AM1 replyview on HN

No worries. Feel free to popularize it. I’m more worried about supply chain security than credit :).


Replies

vlovich123yesterday at 2:42 PM

Also rather than a UUID a hash of the package name is probably sufficient for back compat and avoiding people trying to rotate UUIDs to get sooner / later distribution.