ScoopInstaller / Scoop

A command-line installer for Windows.
https://scoop.sh
Other
21.25k stars 1.41k forks source link

Document the security of scoop #1666

Open keneo opened 7 years ago

keneo commented 7 years ago

I really like the user experience that this project provides.

What I miss is some safety analysis wiki page

How secure is the process of uploading manifest to the known buckets ? how is it checked ? (moderation and virus checking, etc) ?

I.e. something similar to that chocolatey has: https://chocolatey.org/security

ymyke commented 4 years ago

Hi @lukesampson – any thoughts on this? I love scoop but share the concerns or uncertainties some might have around security of the whole system.