Wasn’t vertical integration, was done by packager.
We don’t believe that the openSUSE Deepin packager acted with bad intent when he implemented the “license agreement” dialog to bypass our whitelisting restrictions. The dialog itself makes the security concerns we have transparent, so this does not happen in a sneaky way, at least not towards users. It was not discussed with us, however, and it violates openSUSE packaging policies.
Security is hard and not the fun part of programming (for most people anyway).
KDE and Gnome have problems too.
https://security.opensuse.org/2025/02/21/kio-admin-admittance.html