logoalt Hacker News

lelanthranyesterday at 10:07 PM1 replyview on HN

Because they don't know what they are doing.

In any case, a proxy makes sense, just not for the reasons they give.


Replies

ptxyesterday at 10:39 PM

And it sounds like the proxy can be easily circumvented by the agent, since it only applies within the Node process and the agent can execute arbitrary external commands.

(The filesystem wrapper API sounds even more pointless. The risk it protects against seems insignificant compared to the other risks associated with their system.)