Include suggestions on receipt identifiers
Opened this issue · 0 comments
homebysix commented
Some vendors/developers may not understand the importance of the package receipt, and specifically the reverse-domain identifier used to track which packages are installed, and which files were installed by which packages.
It would be useful to write a short section with guidance on choosing a good reverse domain to use, the relationship (or lack thereof) of package versions to the corresponding payload, and context on how many popular software deployment tools leverage package identifiers and versions to determine eligibility for patching.
Thanks for considering!