Hi, Frank Küster wrote:
In short: May a package assume that package builds are performed with root-like rights, and thus use non-world-writable directories for caching purposes?
Absolutely not. The only assumption you may make is that the binary* targets are called in a way that allows chown and chmod to work and be persistent enough to remain in effect until the target exits.
Description: OpenPGP digital signature