PowerShellGallery icon indicating copy to clipboard operation
PowerShellGallery copied to clipboard

Add Learning Content

Open CyberChristy919 opened this issue 2 years ago • 1 comments

Summary of the new feature / enhancement

I would like to learn why Microsoft set PowerShell to untrusted and the steps to set it as trusted.

Proposed technical implementation details (optional)

This is my understanding of why the PowerShell Gallery download is untrusted.

Microsoft PowerShell is hosted on a community repository that may contain harmful code. It's your responsibility to assess whether you trust the Gallery.

CyberChristy919 avatar Aug 01 '23 10:08 CyberChristy919

@CyberChristy919 yes, that's correct. Most companies that publish packages to the PowerShell Gallery sign their code with certificates, however we allow anyone to publish to the Gallery. That said, it's against policy to publish anything malicious and we do take down those packages, we just can't guarantee that everything on the site is safe to download.

alerickson avatar Aug 01 '23 17:08 alerickson