• woelkchen@lemmy.world
    link
    fedilink
    arrow-up
    4
    arrow-down
    9
    ·
    1 year ago

    I think it's dumb. Software only hosted on Github without a dedicated website shouldn't use com.github.appname. If Flatpak adopts parts of Android's security system, all com.github.* applications could access each others data. That's awful but I don't think it's going away. It's too late for that.

    Now that I think of it, what I would wish for is for an the Flatpak published a guideline how to deal with developers who don't have a domain name, eg. flatpak.devname.appname instead of com.github.appname

    • russjr08@outpost.zeuslink.net
      link
      fedilink
      English
      arrow-up
      6
      ·
      1 year ago

      I'm curious about what you mean by the issue with Android's security model. Apps can have whatever package name they want (… Well, I am sure you can't publish a com.google package on the Play Store) so that doesn't make sense.

      The only thing I can imagine you're referring to is data sharing between applications signed with the same key, but that's not the package name.

      • woelkchen@lemmy.world
        link
        fedilink
        arrow-up
        2
        arrow-down
        10
        ·
        1 year ago

        It’s not android

        Which part of "If Flatpak adopts parts of Android’s security system" don't you understand? Do you need help with conditionals in the English language?

        • AProfessional@lemmy.world
          link
          fedilink
          English
          arrow-up
          11
          arrow-down
          2
          ·
          edit-2
          1 year ago

          Flatpak already has an established security model.

          Your statement is pointless and you are rude.

          • woelkchen@lemmy.world
            link
            fedilink
            arrow-up
            2
            arrow-down
            13
            ·
            edit-2
            1 year ago

            Flatpak already has an established security model.

            You are not a Flatpak core developer, so you have absolutely no idea whether they decide if different applications from the same vendor will at some point be allowed to access each others data.

            Your statement is pointless

            It's not pointless to think about possible future decisions a crucial piece of software might have to make. I also replied to a question from OP, so it's not your decision what is pointless and what isn't anyway.

            and you are rude.

            If you think that being an uninvited "But actually" comment isn't rude, you have a skewed sense of reality. I was answering a question from OP, not yours. You're the one who engaged with that attitude. Look in the mirror before making accusations.

            Edit: Blocking you now. Not engaging with a brat any longer.