logoalt Hacker News

bdangubiclast Wednesday at 1:46 AM2 repliesview on HN

why on the server?!


Replies

Nextgridlast Wednesday at 2:08 AM

Because then you protect against a compromised/misbehaving developer workstation. No matter what the individual developer does, the server will prevent a PR being merged if it doesn’t pass the server-enforced checks.

Running builds on a designated server would also protect against malware on a developer’s machine silently embedding itself into the resulting artifact and then deployed to production.

franklyworkslast Wednesday at 3:17 AM

This was probably the question to ask before declaring it all as junk.