On Wed, Nov 27, 2002 at 11:29:39AM +0000, Chris Ball wrote:
> There are a couple of things (not allowing a release to be deleted and
> re-uploaded, not allowing another maintainer to take over a namespace)
> that seem silly, but are security features.  It would be all too easy to
> upload a CPAN module that just ran `rm -rf /` in the test portion of its
> Makefile.  :(

I believe that transfer arranged by the existing maintainer is possible
(not sure if it is automated)
"Hostile" takeover is possible by arrangement, but it's more "apathy"
than "hostile" - you need to demonstrate that you have the unmaintained author
is uncontactable.

<aol> on the security comments.

Nicholas Clark

Reply via email to