[rb-general] Reproducible builds discussed in Apache Software Foundation (ASF) legal-discuss mailing list

David A. Wheeler dwheeler at dwheeler.com
Wed Jan 23 00:08:47 CET 2019

FYI, the "legal-discuss at apache.org" mailing list is having an active discussion about doing reproducible builds for Apache Software Foundation (ASF) projects under the topic "RE: Binary channels".  You can see that here:

Their legal group is concerned about binaries released by the ASF - officially the ASF only releases source code, but in practice they release binaries - and how do they know they're okay?  One answer is to use reproducible builds.  I've been advocating for reproducible builds from the ASF, and thought you'd like to know. 

--- David A. Wheeler

