How to know which Julia package to trust?

If you would like paid support, JuliaComputing / JuliaHub offers this:
https://juliacomputing.com/products/juliasure/

Otherwise, we do have a general registry of packages all of which are effectively backed up. If a package went rogue, we could delist it or redirect it.

We also have organizations such as JuliaIO · GitHub where multiple individuals, some of whom are paid and some whom are volunteers, collectively maintain some packages.

1 Like