5 ms·
How about instead of pushing the responsibility on someone else, you take responsibility for YOUR security-sensitive context and do the research before you star
by coleifer 7y ago
How about instead of pushing the responsibility on someone else, you take responsibility for YOUR security-sensitive context and do the research before you start installing libraries?
- ixtli 7y agoexactly. the dev has to take responsibility for what they write but there’s no responsibility required when you run something??
- jimbokun 7y agoIsn't that exactly what happened? This article is someone who did that research on multiple Rust HTTP clients and reported what they found: https://medium.com/@shnatsel/smoke-testing-rust-http-clients-b8f2ee5db4e6 https://medium.com/@shnatsel/smoke-testing-rust-http-clients... Which I believe is what kicked off the events leading to Klabnik's blog post?
- UncleMeat 7y agoThat’s fine. “Hey, this project has bugs maybe don’t use it” is fine. Dog piles on Internet forums because the dev isn’t doing what you want isn’t fine.
- throwaway765432 7y ago> Dog piles on Internet forums because the dev isn’t doing what you want isn’t fine. Therein lies the problem. You cannot reasonably expect to link a blog post that says what that one did on Reddit and not have people dog pile. They will, every single time.