Menu

SourceForge Untrusted

Anonymous
2015-12-28
2015-12-29
  • Anonymous

    Anonymous - 2015-12-28

    Has there been any plans on moving away from SourceForge? It is considered an untrustworthy source since they started hijacking projects and injecting malware.

     
  • Janusz Szpilewski

    Sourceforge indeed tried to copy projects hosted elsewhere and even in some cases provide their custom installer throwing in some sponsored content. Looks that they try to support themselves and maybe even their actions are compatible with open source licences. Given that some big industry names dropped their efforts to support their own project hosting servers one may think that this is a costly business.

    Given that hijacking concerns bringing projects hosted elsewhere to Sourceforge the projects originally hosted on Sourceforge seem to be safe :) Additionally installer and all other binaries created for this project are digitally signed so hampering with them is not simple and can be easily spotted.

    Despite all the criticism Sourceforge proved to be able to survive a long period of time and provides all features needed by this project including hosting binaries which is not trivial on hosts focusing directly on some source code control. For the stability of the project it is better to avoid a trap of getting busy tracing the latest fad by moving from one project space provider to another or from one source control to another and having no time for writing real code.

     

Anonymous
Anonymous

Add attachments
Cancel





Want the latest updates on software, tech news, and AI?
Get latest updates about software, tech news, and AI from SourceForge directly in your inbox once a month.