• UnculturedSwine@lemmy.world
    link
    fedilink
    arrow-up
    1
    ·
    10 months ago

    I feel like you could also give the maintainers the power to “re-publish” using a different verified maintainer so that if such a thing does happen, it can be reversed without input from the maintainer that originally pulled it. I don’t know enough about the system to really know if this is a good idea tho.

    • locuester@lemmy.zip
      link
      fedilink
      English
      arrow-up
      7
      ·
      9 months ago

      Yeah then you’ve got security problems. If a maintainer pulls a package, you wouldn’t want some rando able to push a new one in its place.