i-probably-didnt-backdoor-this: Reproducible Builds for upstreams

Bernhard M. Wiedemann bernhardout at lsmod.de
Fri Aug 20 01:37:33 UTC 2021



On 20/08/2021 01.16, kpcyrd wrote:
> 
> I uploaded a github repo that distributes a Hello World in various
> formats (ELF binary, Docker image, 3rd party(!) Arch Linux package) and
> documented every file and command needed to reproduce the artifacts
> bit-for-bit:
> 
> https://github.com/kpcyrd/i-probably-didnt-backdoor-this

This is nice work towards binaries we can trust.

Ciao
Bernhard M.

-------------- next part --------------
A non-text attachment was scrubbed...
Name: OpenPGP_signature
Type: application/pgp-signature
Size: 236 bytes
Desc: OpenPGP digital signature
URL: <http://lists.reproducible-builds.org/pipermail/rb-general/attachments/20210820/f351067b/attachment.sig>


More information about the rb-general mailing list