lovac42 / Blitzkrieg

AnkiAddon: Advanced Browser Sidebar
GNU Affero General Public License v3.0
21 stars 3 forks source link

why commit 8a60110 (improved zip packer security)? #3

Closed ijgnd closed 5 years ago

ijgnd commented 5 years ago

This not an "issue" but I'm curious. How does the commit 8a60110 which removes from .main import * from your __init__.py and adds echo from .main import * >>%REPO%/__init__.py to your build script improve the security? A short hint would be great. Thanks.

lovac42 commented 5 years ago

It's to prevent new users using drag and drop on the src folder without using official releases on the github release page.

ijgnd commented 5 years ago

makes sense. Thanks for this info (and in general for sharing the add-on).