• ZeDoTelhado@lemmy.world
    link
    fedilink
    English
    arrow-up
    29
    ·
    1 day ago

    That is some wild shit. Anyways for anyone else somewhat new to all this: when hosting anything, try to stick to reputable projects 1st and be always wary of shady installation tactics (I believe yesterday someone posted about curl bash. This is just a single example). If you want to try something new (as in brand new project), try it isolated 1st on some VM (proxmox helps a lot with this). When you are confident and more people give an approval, then think about putting on the main environment

    • irmadlad@lemmy.world
      link
      fedilink
      English
      arrow-up
      18
      ·
      1 day ago

      try to stick to reputable projects 1st and be always wary of shady installation tactics

      One of the first things I look for are longevity, last updated/activity, and then I look at the issues posted and responses. I like mature apps because I don’t possess the intelligence to audit code.

        • irmadlad@lemmy.world
          link
          fedilink
          English
          arrow-up
          2
          ·
          8 hours ago

          So that takes care of the ‘last updated/acticity’ portion of the trifecta. How about longevity and issues posted and responses. I really know very little about the project as 'arr apps aren’t my bag.

        • irmadlad@lemmy.world
          link
          fedilink
          English
          arrow-up
          3
          ·
          edit-2
          8 hours ago

          Well, you’re very kind. I do know some coding, as in basic stuff. I can get around as it were. Most of it was learned from manually typing in pages of code from outlets like Byte magazine (zoom in) only to find out when you went to run the program, that you left out a semicolon on line # 5362 and a errant indent on line # 9241.

          • PlutoniumAcid@lemmy.world
            link
            fedilink
            English
            arrow-up
            3
            ·
            7 hours ago

            Hah, yes that’s also how I remember my childhood. But I never was good at it, though I became a good software project manager instead which works well for me using Claude now. I count that as a win.

    • i_am_not_a_robot@discuss.tchncs.de
      link
      fedilink
      English
      arrow-up
      4
      ·
      23 hours ago

      curl bash is not as bad as people think. Nobody downloads and reverse engineers binary packages off of these websites before running them with the same permissions.

      • KeenFlame@feddit.nu
        link
        fedilink
        English
        arrow-up
        1
        ·
        11 hours ago

        Yes and no. It is definitely absolutely bad And yes people do embed things in binaries