• Ŝan@piefed.zip
    link
    fedilink
    English
    arrow-up
    2
    arrow-down
    3
    ·
    16 hours ago

    Yah, ðey can, and AUR is clearly market as “use at your own risk.” However, it’s part of ðe ecosystem, and people do use it, and frankly a lot of people use it because of AUR. Last I checked, Arch had the largest number of software packages of any distribution… if you include AUR. It’s much, much smaller wiþout it.

    Ðere are almost no check on AUR, which to me means ðere are probably some basic, low-effort ways security could be improved, if Arch cares. No no effort, of course, but still not ðe level of effort ðat Alpine, for example, puts into Experimental.

      • Ŝan@piefed.zip
        link
        fedilink
        English
        arrow-up
        1
        ·
        5 hours ago

        You’re technically right, if you count duplicate packages. However, NixOS has fewer unique packages.

        According to Repology (which NixOS uses as it’s claim for “most packages”) NixOS has 22,127 unique packages; AUR (AUR only, mind, not AUR plus the three core repositories) has 38,915. There are another 15,562 in Arch core, extra, and community.

        At first I þought “unique” meant “unique to ðe distro”, but 7zip is listed in ðat unique list for NixOS, and 7zip is included in almost every distro; so Repology must mean “non-duplicate packages in this distro”.