Russian Spam & Profanities Are Now Plaguing The Arch Linux AUR
submitted by
https://www.phoronix.com/news/Arch-Linux-AUR-Russian-Spam
https://www.phoronix.com/news/Arch-Linux-AUR-Russian-Spam
True. I just hope Iām right in my way of thinking there, is all. š Maybe someone more knowledgeable than I am could fill me in on wether or not Flatpak is actually a safer option than the AUR (given blindly installing stuff without inspection).
I believe Flatpak is safer than the AUR, as there is comparatively more vetting by third parties (e.g. Flathub). Also, the apps you install are sandboxd, which has upsides in terms of security but may have downsides for certain kinds of app, since permissions for full file access, communication with other apps, etc. are restricted by default.
I like the AUR since itās more ānativeā than the one-size-fits-all Flatpak, but I use both depending on the use case for that app. Sometimes, one version is out of date, in which case I would prefer Tue other.
This is what I had assumed as well, so thanks for confirming!
Not sure how what you mean by ānativeā though. Flatpak apps donāt run in some kind of virtualization, do they? Or you mean native to the package system?
Native as in how Flatpaks are a universal package format while AUR is Arch-specific. There are some occasional quirks in some Flatpak apps. For instance, Flatpak Localsend does not detect the system accent colour, while the AUR version does. Itās not a problem for most apps though.
Yeah Flatpak applications need access to some portal or something I guess in order to gain access to stuff.
Meh, I like it. I use it for stuff I donāt necessarily trust, like Slack, Discord (which hasnāt been launched for a while nowā¦), Steam (higher trust in that than the others though), etc. Non-free stuff. š