• Leaflet@lemmy.world
    link
    fedilink
    English
    arrow-up
    10
    ·
    22 hours ago

    Wasn’t vertical integration, was done by packager.

    We don’t believe that the openSUSE Deepin packager acted with bad intent when he implemented the “license agreement” dialog to bypass our whitelisting restrictions. The dialog itself makes the security concerns we have transparent, so this does not happen in a sneaky way, at least not towards users. It was not discussed with us, however, and it violates openSUSE packaging policies.

    • Simon 𐕣he 🪨 Johnson@lemmy.ml
      link
      fedilink
      arrow-up
      2
      ·
      19 hours ago

      Right, but what I’m saying the design to need these things was likely based on Deepin running their own distro. They don’t have to consider the security guidelines of other distros like KDE or Gnome, XFCE or Enlightenment would.

      • michaelmrose@lemmy.world
        link
        fedilink
        English
        arrow-up
        2
        ·
        4 hours ago

        It needed those things brought in through the back door because the code was a steaming pile of shit security wise and would have been rejected at the front door.