fosero / flatpak-overlay

A Gentoo ebuild overlay for flatpak
77 stars 22 forks source link

clone via https, not insecure git #11

Closed hannob closed 6 years ago

hannob commented 6 years ago

Change the URL from git:// to https://. The git:// protocol provides no security of the transmitted files and should be avoided. It allows a man in the middle attacker to inject arbitrary code or malicious ebuilds.

fosero commented 6 years ago

Right you are, thanks.