Fork me on GitHub
#web-security
<
2021-11-17
>
slipset09:11:28

Have you looked into it yet? I saw this in passing, but haven’t had time to look properly at it.

slipset09:11:20

Seems to me that it would need some more rules to be super useful

slipset09:11:12

Also, I guess a security product that encourages you to

sudo curl -L  -o /usr/local/bin/clj-holmes

slipset09:11:19

makes me a bit uneasy.

👀 1
robert-stuttaford14:11:49

i hadn't looked in any detail yet, no!

slipset14:11:23

I looked at the rules, nothing revolutionary, but it does catch using clojure/read-string and some other stuff. I guess the meat of the work would be in defining the rules, much as with kibitz in that respect.

slipset14:11:45

Also, the prebuilt binary was only for linux, so I didn’t get to run the thingy.

vemv14:11:41

as hinted in the #announcements thread, a couple of the rules seemed a good fit for Eastwood :) might give it a shot at some point