as the person who pushed for the alpine core team (now TSC) to adopt a policy of rejecting telemetry features in alpine-packaged software, i have opinions on flathub
mostly i am concerned that pushing users to use vendor-provided builds distributed on flathub may be exposing users to harmful software misfeatures like telemetry in ways that they would not if those same users installed packages from a distribution which patches out these misfeatures as a matter of policy
i wish that flathub would explicitly ban telemetry and check for telemetry features during their review processes. i would be more likely to recommend flatpak in more cases if they did.
my philosophy here effectively boils down to a simple position: your computer should not be a rat.
@ariadne my inability to tell whether any text I enter into text box or command line on my computer will get sent to another computer is drubbing be fucking nuts
@kevinriggle well in alpine at least, that would be a release-critical bug in whatever package is doing it
@kevinriggle@ioc.exchange @ariadne@social.treehouse.systems
honestly this, i do some work with sensitive data and i'm always just left wondering if running this command or that program is calling home with sensitive data. like even if its been approved for use and all that, i still see things like copilot which is installed and active in the vs code instance they provide and i just have to squint like "you sure?"