Re: Security: Be careful with StarDict!
On 2025-08-06, Henrik Ahlgren <pablo@seestieto.com> wrote:
> Maytham Alsudany <maytham@debian.org> writes:
>
>> P.S. I've already seen a post in the Debian subreddit[1] and an
>> article[2] about this thread; it should not be getting this much
>> notoriety/coverage.. It also amuses me how the comments of a few people
>> who happen to be DDs (e.g. myself, stardict package maintainer) are
>> being represented as the position of Debian as a whole.
>
> Everyone seems to be quite concerned about the notion that the servers
> are located in China (which does not appear to be accurate for
> dict.youdao.com when accessed from, for instance, Europe). This
> perspective sounds overly alarmist and misses the main issue – I believe
> that the default behavior is unacceptable regardless of who operates the
> server and its location.
>
If you are a Debian package maintainer, and your package is in Debian
stable, then it is natural for users to assume the behavior of your
package is acceptable to Debian as a whole. This is no cause for
blithe and condescending amusement.
Reply to: