
Every version of every package submitted must pass through a rigorous moderation review process before they become publicly available (includes checks for quality, consistency, installation, and validations against VirusTotal).Here are some other important things to understand: Most organizations using Chocolatey do NOT use the community repository, and Chocolatey Software DOES NOT RECOMMEND using the community repository either for organizational deployments for a variety of reasons. Community package repository is the same thing as packages, and represents less than 5% of the existing packages in existence (nearly all are internal). Use of the community package repository is optional. No need for discussion, there are many reasons we don't need to get into, mostly it protects our ability to ensure all infrastructure costs can be paid for.


With Chocolatey (choco) client itself, these are the important things to know: But to give you a high level of what to expect with Chocolatey. We know you are going to read this entire document anyway.
