fireflash38

joined 1 year ago
[–] [email protected] 6 points 6 months ago (2 children)

Got a source for the majority claim?

[–] [email protected] 7 points 7 months ago (7 children)

I'd agree more if most docker stuff didn't depend on running as root.

[–] [email protected] 2 points 7 months ago

Your bones. It's not good for osteoporosis IIRC.

[–] [email protected] 2 points 9 months ago

Now install tools that are only available as github released binaries. And ensure that hashes match for that. Maybe install a tool that needs to be compiled.

[–] [email protected] 71 points 10 months ago (6 children)

What if, get this, we put the bash scripts in yaml. And then put it in kubernetes.

[–] [email protected] 4 points 11 months ago

And what is the token in the link?

[–] [email protected] 4 points 1 year ago (1 children)

Consider that a 'username+password' is much harder to 'revoke' individually. As in, you can have 3-4 API keys in use, and can revoke any one of them without having to change a password.

You can also change password independently of the keys, or have it linked so keys are revoked on a password change. It also allows traceability as to where accesses are coming from (auditability). If everything is using the same client-id+secret (or usn/pwd), you don't know which 'client' is doing what.

[–] [email protected] 94 points 1 year ago (17 children)

It's the sort of thing that makes me really, really sad for the people working there. That crazy breakneck pace cannot be good for mental health.

[–] [email protected] 3 points 1 year ago (1 children)

Did you only make it past the first paragraph? Cause you missed the years of scummy shit they've done, completely unrelated to politics.

[–] [email protected] 1 points 1 year ago

I think too many people forgot the satire in the original name.