You must log in or register to comment.
My personal gut feeling: the maintainer will just shoot this attempt down and close the PR.
Happy to be proven wrong here though.
dtolnay isn’t the only maintainer though. oli-obk is also a maintainer and is participating in the discussions on the PR.
Technically true, but he has two merge commits in last three years. Not sure that will still give him much of a pull.
Author of the PR made it opt-out. I think it may be enough of the compromise for the maintainer.
Has dtolnay shown a strong sentiment towards having it be on always? I can’t imagine there’s much reason not to make it configurable.
So, the general unsuspecting public will still be executing this potentially-malicious binary, and only those in the know will be able to avoid it?