It’s fairly easy to take an application installer in Mac OS X and repackage it. In the process it’s also straight-forward to include other, potentially unintended information in the package. This is why a number of vendors will sign their packages and then post the signatures for systems administrators to be able to verify the signatures. In Mac OS X you can also view the contents of a package by control-clicking on it and choosing Show Contents in order to be able to manually review the contents. But could it be even easier? Apparently so: Mothers Ruin Software has written a QuickLook plug-in for Packages, called aptly enough, Suspicious Package.…