top | item 31327175

(no title)

cordite | 3 years ago

Who will check the signatures when so few have signatures?

What dev thinks oh I can’t upgrade because of this error, stackoverflow says use this flag —disable-signature-verification so I do and now I can develop again

discuss

order

flatiron|3 years ago

Any place with a devops team would not disable that.

progval|3 years ago

For what it's worth, Debian packagers check signatures when downloading from PyPI.