diff options
Diffstat (limited to '')
-rw-r--r-- | tags/s/spurious-fields-in-upstream-signature.tag | 10 |
1 files changed, 10 insertions, 0 deletions
diff --git a/tags/s/spurious-fields-in-upstream-signature.tag b/tags/s/spurious-fields-in-upstream-signature.tag new file mode 100644 index 0000000..deb3389 --- /dev/null +++ b/tags/s/spurious-fields-in-upstream-signature.tag @@ -0,0 +1,10 @@ +Tag: spurious-fields-in-upstream-signature +Severity: info +Check: upstream-signature +Explanation: The packaging includes a detached upstream signature file that contains + spurious fields like <code>Comment:</code> or <code>Version:</code>. They are + sometimes added by <code>gpg --enarmor</code>, especially if you have an older + version. Modern versions only add a <code>Comment:</code> field. + . + Please generate the signature with <code>gpg --armor --detach-sig</code> using a + modern version instead. |