An HOA (home owners associations) can say what color you can paint your house, What you can plant in your yard, What you can have in your driveway, and some even say what color your blinds can be.

Microsoft controls your computer, they say what info is sent back to Microsoft, and they say when you must upgrade. They can shut down your computer when they want whether you like it or not.

    • superkret@feddit.org
      link
      fedilink
      arrow-up
      5
      ·
      14 hours ago

      You trust their repos.
      With every apt update, they could push whatever code they want onto your PC.
      Same as with literally any binary-based OS.

      • tsugu@slrpnk.net
        link
        fedilink
        arrow-up
        5
        ·
        13 hours ago

        Someone definitely reads the changed code of Gentoo packages. You are saying that every operating system on the planet is untrustworthy, besides gentoo and a few other source-based distros, but let’s target Ubuntu in particular.

        • superkret@feddit.org
          link
          fedilink
          arrow-up
          7
          ·
          13 hours ago

          That’s not what I’m saying.
          I’m saying you need to trust the people making your OS cause no way in hell is anyone else able to audit every update they push.
          Whether your OS is trustworthy depends on their history. In that regard, I’d give Ubuntu a solid B-

      • Telorand@reddthat.com
        link
        fedilink
        arrow-up
        1
        ·
        14 hours ago

        How does that work, exactly? I don’t actually know. Are they compiling their own copies of the upstream code changes?

        • superkret@feddit.org
          link
          fedilink
          arrow-up
          5
          ·
          edit-2
          14 hours ago

          Yes, they’re taking the source code from upstream, modifying (“patching”) it, compiling it, then uploading their compiled binaries to the Ubuntu repo where your system downloads them during an update.

          You can technically download the source code as well, if you activate the source repo. But hardly any end user does. And the source code you get doesn’t compile to the same binary you get from the repo anyway. (This would be called a “reproducible build”. Some distros try to be reproducible. Ubuntu doesn’t, they have other priorities.)

          • Telorand@reddthat.com
            link
            fedilink
            arrow-up
            2
            ·
            13 hours ago

            Thank you. That makes sense why some downstream distros designed for specific purposes (e.g. gaming) might include a handful of their own repos for specific software.