26 ms·
Reminds me of the times I've seen junior devs changing "password" to "wordpass" to bypass automated commit checks for sensitive data. These kinds of checks are
by devmor 3y ago
Reminds me of the times I've seen junior devs changing "password" to "wordpass" to bypass automated commit checks for sensitive data.
These kinds of checks are so trivially defeated, the only people they actually stop is people trying to do legitimate work.
- zirgs 3y agoTbh in this case that check is useful. It prevents devs from accidentally including passwords in their commits.
- devmor 3y agoNot a perfect example, but the point is that it's not stopping anyone from doing anything malicious.
- sebzim4500 3y agoPresumably some of those devs will see the warning and think "oh yeah, I probably shouldn't commit the password" rather than find a workaround.
- marcosdumay 3y agoI really hope their password isn't literally "password", so I can't see how blocking that word improves anything.