On Mar 30, Jonathan Carter <jcc@debian.org> wrote: > Another big question for me is whether I should really still > package/upload/etc from an unstable machine. It seems that it may be prudent If we do not use unstable for development then who is going to? I think that the real question is whether we should really still use code-signing keys which are not stored in (some kind of) HSM. -- ciao, Marco
Attachment:
signature.asc
Description: PGP signature