Colin Watson writes:
> Do you not think it is important for sponsors to verify what they're
> sponsoring against trojans? How do you propose to verify a lump of binary
> data you've received?

By receiving both binary and source, verifying as you would with a full
upload, and then uploading only the binary?
