[Koha-bugs] [Bug 23890] Plugins that utilise possibly security breaching hooks should warn

bugzilla-daemon at bugs.koha-community.org bugzilla-daemon at bugs.koha-community.org
Tue Oct 29 08:57:37 CET 2019


https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=23890

David Cook <dcook at prosentient.com.au> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |dcook at prosentient.com.au

--- Comment #3 from David Cook <dcook at prosentient.com.au> ---
(In reply to Martin Renvoize from comment #2)
> As such, I think warning on some but not others could actually lead us to
> worse situation where inexperienced system administrators are lulled into a
> false sense of security.
> 
> In reality, I feel we need a cleaner delivery method for plugins as a
> community and perhaps a signing procedure to state a certain level of
> trust/quality.  This is something I've wanted to work on for some time but
> not had a moment to implement to date.
> 

I totally agree with this.

-- 
You are receiving this mail because:
You are watching all bug changes.


More information about the Koha-bugs mailing list