Request For Candidates: Application Review Board

Scott Kitterman ubuntu at kitterman.com
Tue Aug 17 15:26:25 BST 2010



"Matthew Paul Thomas" <mpt at canonical.com> wrote:

>-----BEGIN PGP SIGNED MESSAGE-----
>Hash: SHA1
>
>Siegfried Gevatter wrote on 16/08/10 15:34:
>>
>> 2010/8/16 Matthew Paul Thomas <mpt at canonical.com>:
>>>
>>> The problem with a PPA, besides the difficulty of adding it in the
>>> first place, is that it can hose your system (which is what makes it
>>> possible for the Ubuntu Kernel Team to have a PPA, for example). The
>>> Application Review Board will protect against things like that.
>> 
>> What happened with the idea of "trusted PPAs" which was discussed a
>> year ago?
>
>That's one possible future extension to the Maverick scheme. The Review
>Board could approve a PPA, instead of approving just a piece of software
>inside that PPA.
>
Doing that would be extending the Ubuntu trust boundary to include not only the owners of the PPA, but whoever they decided to trust in the future. I like the current plan a lot better than that one.

Scott K



More information about the ubuntu-devel mailing list