Somewhat new to Homebrew. As I understand it, Homebrew Cask looks for apps in its Github repository. I don't know how they get there, but I assume that the app or the link which lives at Github is not supplied by the developers of the associated app. So, then, is a download from the Cask repository an exercise of trust in the Cask maintainers?
Homebrew Cask and Security
homebrewSecurity
Related Question
- Removing an application from homebrew-cask
- MacOS – How does software updates work in OS X
- Advantages of installing a program with Homebrew-Cask
- MacOS – Link pre-installed apps to Homebrew Cask
- Homebrew Cask: List all formula available for installation
- IOS – How to check the country of origin for apps in the iOS App Store
Best Answer
Yes, and also trust that having the sources in the open and others using it, you don't need to be the first person to catch a bad act. The traceability of who checks in what hopefully is a deterrent to casual maliciousness.
You of course are more secure to not automate installs of unsigned software from the internet.