logoalt Hacker News

rubnogueiratoday at 9:36 AM1 replyview on HN

aube (npm/yarn/pnpm drop-in alternative) now has a "jailBuilds" flag that restricts access to network/filesystem access.

https://aube.en.dev/package-manager/jailed-builds.html

But this feels like a cat/mouse game.


Replies

cyanydeeztoday at 9:44 AM

dino was wired with security in mind, but you can see developers dont tend towards aecurity

show 1 reply