Just a regular Joe.

  • 0 Posts
  • 127 Comments
Joined 3 years ago
cake
Cake day: July 7th, 2023

help-circle



  • demonstrated any actual competency in this domain

    It may be that he/they have significant competency in this domain, just not publically or under this name/pseudonym.

    I’ve personally made contributions under pseudonyms just to avoid employer paperwork/approvals, for projects that I’d rather not have my real name attached to, and for sharing in potentially hostile communities.

    I’ve also developed software internal to companies that has never been released publicly.

    In short … he doesn’t need to prove his prior credentials to you, me, or anyone. He may have some, he may not.

    We can legitimately critique what he/they have done in this project all we like though.








  • A couple of tricks I use:

    • an apparmor profile tied to a shell script that wraps other commands … it restricts read & write access to a scratch directory … perfect for builds or one off scripts.

    • iptables rules & cgroups to restrict network access… I have a setuid wrapper that drops privs again…

    • bwrap and mounting only what’s necessary… quick to get going.

    • custom landlock wrapper, similar to apparmor but allows for quick userspace wrapping.

    They can be combined too.