| ▲ | ajross 2 hours ago | ||||||||||||||||
While true, tarring Arch here is a little unfair. AUR isn't enabled by default. It can't even be used via the same package front end, and in fact the "official" usage model requires that you clone the source yourself. Indeed, AUR is bad as a software distribution mechanism (really it's best understood as a proving ground for baby packages before they get real maintainers and distro blessing), but it's less bad than NPM which puts the malware in the trusted/default/automated path. | |||||||||||||||||
| ▲ | matheusmoreira 2 hours ago | parent | next [-] | ||||||||||||||||
I'm not tarring Arch, I was praising it. I made sure to explicitly spell out the "User Repository". Arch is the one that does it right. | |||||||||||||||||
| ▲ | Ancapistani 2 hours ago | parent | prev [-] | ||||||||||||||||
I didn’t take it that way at all - rather, Arch is the only one that does it “right” with the AUR. | |||||||||||||||||
| |||||||||||||||||