Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

A temporary typo squating of the difft crate #725

Open
nmay231 opened this issue May 31, 2024 · 0 comments
Open

A temporary typo squating of the difft crate #725

nmay231 opened this issue May 31, 2024 · 0 comments

Comments

@nmay231
Copy link

nmay231 commented May 31, 2024

I just published a crates.io package under the name difft because I tried installing difftastic using that name and would rather have a benign typo-squat instead of a malicious one. Of course, I'm ready to transfer ownership; I just wanted to claim it before it was too late. I could have confided my concern to you privately and directly, but I also wanted to use this as a learning experience :)

This issue is to discuss what you would prefer to do with this typo-squat

  1. set up alias publishing
  2. have a fake package that errors and redirects user to install correct package

Let me know your thoughts.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant