Hacker News new | past | comments | ask | show | jobs | submit login

How does pypi know I'm not github? Because I can sign with my keys and not with github's key.

Never mind all the low level details of the temporary keys and hashes and all of that. This is an high level comment not a university book about security.






Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: