Hacker Newsnew | past | comments | ask | show | jobs | submit | Talderigi's commentslogin

rust fixed memory safety but left build-time trust wide open. What’s the realistic path to fixing this? sandboxed builds by default, or stricter provenance (sigstore-style) or what?

We built systems we don’t fully understand, so naturally the next step is… immunity

From liability!

If this were to actually happen I can only imagine financial liability is the least of their concerns?

What scares me most about this is the narrowness of thought to match this fear with this response.


fully agree, doesn’t really feel like they’re reacting to the same problem they’re describing

open source but the off switch is centralized

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: