Re: Should we stop distributing source tarballs?

2024-04-06 Thread Tobias Leupold
Am Samstag, 6. April 2024, 18:22:22 CEST schrieb Sven Brauch: > Hi, > > On 06.04.24 13:07, Marc Deop i Argemí wrote: > > > If you automate things, everything can be reviewed/validated by more than > > one > > entity and thus increasing security. > > > > The CI can be reviewed and audited but

Re: Should we stop distributing source tarballs?

2024-04-06 Thread Sven Brauch
Hi, On 06.04.24 13:07, Marc Deop i Argemí wrote: If you automate things, everything can be reviewed/validated by more than one entity and thus increasing security. The CI can be reviewed and audited but your personal laptop and your workflow cannot. This is basically a discussion about

Re: Should we stop distributing source tarballs?

2024-04-06 Thread Marc Deop i Argemí
On Friday, 5 April 2024 13:45:35 CEST Carl Schwan wrote: > I disagree. I want my tarball to be signed with my GPG key stored in my > Yubiky and not by a generic KDE key. It should be a proof that I as a > maintainer of a project did the release and not someone else. Same with the > upload to

D19557: Update design to look more similar to kde.org

2024-04-06 Thread Friedrich W. H. Kossebau
kossebau added inline comments. INLINE COMMENTS > kde-docs.css:252 > +color: white; > +font-height: 3em; > +background: #54a3d8; Seems there is no such CSS property font-height? Was this meant to be e.g. font-size or line-height? REPOSITORY R238 KDocTools REVISION DETAIL