Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Easier for humans to parse, but introduces the threat vector of malicious attackers modifying the history and force submitting malicious code at or before a pinned time. That's why lock files exist.

SHA is still the way to go for those who are security sensitive.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: