----- Original Message -----
IMHO, we need a crypto-expert or team to formally review this
proposal,
Nikos, who proposed this, is a crypto expert :)
to identify packages it affects and to advise packagers and upstreams
on
how to implement this, because I feel this proposal is way beyond the
scope of skill/knowledge of an average packager.
The guidelines can and probably should be expanded to be more directly applicable to other
languages, but IMHO making such a change in a package’s primary implementation language
very much _needs_ to be within the scope of the skill expected of an average packager.
Mirek