this post was submitted on 04 Jun 2024
279 points (98.9% liked)

Linux

48338 readers
385 users here now

From Wikipedia, the free encyclopedia

Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).

Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word "Linux" in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.

Rules

Related Communities

Community icon by Alpár-Etele Méder, licensed under CC BY 3.0

founded 5 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] thingsiplay@beehaw.org 60 points 5 months ago* (last edited 5 months ago) (28 children)

Examples of unverified apps:

... these would be hidden by default. Is any of these applications dangerous or a security risk to the system / user?

Linux Mint:

Unverified Flatpaks represent a huge security risk.

I personally don't like this. This is not really true and in worse case even misleading and giving a false sense of security. If an app represents a huge security risk, why in the first place is it allowed in the repository? Unverified does not mean its a security risk, this is their interpretation of it. Unverified simply means, it is not verified by the original author.

Create a fork of an app and verify your website with the fork in Flatpak. The system is already broken. Another point is, that lot of unverified apps are just normal apps, as this is the way applications are handled in Linux. We have the right to create alternative versions of the programs and the verification badge will show that. There is no point in hiding alternatives. By doing so, it undermines a reason why we use GPL and Open Source. And what about apps where the original author does not care, but was brought to Flatpak by a community member?

Flathub:

It's similar failure to what Flathub does on their site too, but for another thing.

Potentially unsafe: Full file system read/write access; Can access some specific files

Even though LibreOffice is verified, it is marked as potentially unsafe application on Flathub.

[–] ColeSloth@discuss.tchncs.de 0 points 5 months ago (1 children)

I've heard you don't want the flat pack Steam, so....

[–] thingsiplay@beehaw.org 3 points 5 months ago

But that's a personal decision. It's not like Steam Flatpak would be a huge security risk, as the Mint devs say. Just because its not officially verified. Even Valve themselves recommended to use the Flatpak version of Steam, as an alternative to Snap package. You think such a package would be good enough if Valve itself sanction it. I would like to provide a link for this, but cannot find it right now.

load more comments (26 replies)