What is Nostr?
Geoffrey Thomas /
npub1c9l…kcjr
2024-05-23 12:56:09
in reply to nevent1q…hcxz

Geoffrey Thomas on Nostr: But there is no such rule! Plenty of projects that are _not_ security clowncars ...

But there is no such rule! Plenty of projects that are _not_ security clowncars recommend curl|bash for thoughtful reasons. Plenty of projects that are security clowncars ship source tarballs with unreproducible ./configure scripts.

There is a _perception_ that it's bad, yes. I think a respected project using curl|bash is just as likely to to rehabilitate curl|bash and fix that perception, especially if (as here, as Sandstorm did, etc.) they write about why it's okay.
Author Public Key
npub1c9lng6pywu3dv85wsfgpulran2jrqulu7yw8sejr5ml69czq4v0sqfkcjr