Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Much more valuable to have the security folks a critical part of reviewing the _frameworks_, and then pushing adoption of those frameworks. Human reviewers won't catch everything no matter what, but you can make entire classes of problems go away by making them impossible to commit.


Does that mean we can kill angular 1.x because it encourages points of disconnect, undiscoverable code, too much pfm (pure fucking magic) and failure?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: