Comment 3 for bug 778760

Revision history for this message
Jean-Philippe Paradis (hexstream) wrote :

Package locking is a feature that each individual library must explicitly activate for their users to benefit from it. I think it's safe to say most libraries out there (at least 51%!) don't lock their package(s) (not that I made a formal survey, just a hunch).

The feature I'm proposing would grant a nice level of additional protection by default, with zero involvement from libraries. I think that's significant and worth considering.