• off_brand_@beehaw.org
      link
      fedilink
      arrow-up
      4
      ·
      3 months ago

      Do you? Genuinely, not trying to snark. I see this point lots, but Im skeptical that people actually do.

      As a dev, I read plenty of commits, and the idea of voluntarily prodding through commits on a FOSS project is just not happening. I’d rather just trust the dev, and the community to pick through the code in my place. The obvious issue being, what if everyone also does that.

      • Aatube@kbin.melroy.orgOP
        link
        fedilink
        arrow-up
        2
        ·
        3 months ago

        In fact, sometimes! Sometimes I check GitHub’s difference between tags and open commits with commit summaries too vague on the first page. Yeah, it’s pretty much just a basic scan, but since it’s open source I don’t think they’ll be brave enough to do things too nefarious and hidden, which like the bystander effect you’ve said, I feel like will come to light anyway. Hell, someone somehow managed to find furry porn in Thorium.