Get the latest tech news

CocoaPods trunk read-only plan


The blog for CocoaPods.org the Cocoa Dependency Manager

We are discussing that on a very long, multi-year, basis we can drastically simplify the security of CocoaPods trunk by converting the Specs Repo to be read-only. I plan to implement the read-only mode so that when someone submits a new Podspec to CocoaPods, it will always be denied at the server level. My goal is to send 2 very hard-to-miss notifications en-masse, and then do a test run a month before the final shutdown.

Get the Android app

Or read this on Hacker News

Read more on:

Photo of CocoaPods

CocoaPods

Related news:

News photo

'Almost every Apple device' vulnerable to CocoaPods supply chain attack