• Muehe@lemmy.ml
    link
    fedilink
    arrow-up
    14
    ·
    21 hours ago

    While true, a git history is also easily protected against fabrication. Require cryptographically signed commits and prevent contributors from force-pushing to the public repo and you should be good.

    • HelloRoot@lemy.lol
      link
      fedilink
      English
      arrow-up
      4
      ·
      edit-2
      12 hours ago

      I mean, if you try to “scam” the gov, you can clone some codeberg repo to github, rename it, rewrite history to make the commits look like you did everything and then tell the gov “look at how much work I volunteered”. At least in germany, there are currently not enough public workers so many little things go unchecked.

      • Muehe@lemmy.ml
        link
        fedilink
        arrow-up
        4
        ·
        edit-2
        14 hours ago

        Ah I see, yeah I guess something like that would be possible. On the other hand it would be trivial to prove this happened even in the future as long as the government keeps a unedited copy of this repo.