127
submitted 3 days ago* (last edited 3 days ago) by dl007@lemmy.ml to c/opensource@lemmy.ml
you are viewing a single comment's thread
view the rest of the comments
[-] peregus@lemmy.world 2 points 3 days ago

But the JS code could be checked on the webpage, correct? If so, the page could be trysted (if vetted).

[-] flux@lemmy.ml 2 points 2 days ago

In theory, yes. But if you follow the link and that leads to downloading the JS and running it, you're already too late inspecting it.

And even if you review it once (and it wasn't too large or obfuscated via minification), the next time you load a page, the JS can be different. I guess there could be a web browser extension for pinning the code?

The only practial alternative I know of is to have a local client you can review once (and after updates).

this post was submitted on 05 Nov 2024
127 points (98.5% liked)

Open Source

31077 readers
785 users here now

All about open source! Feel free to ask questions, and share news, and interesting stuff!

Useful Links

Rules

Related Communities

Community icon from opensource.org, but we are not affiliated with them.

founded 5 years ago
MODERATORS