This blog post seemed very normal until I hit this bit
GITHUB ACCIDENTALLY POSTED THEIR PRIVATE KEYS TO GITHUB
THERE IS LITERALLY NO ONE ON EARTH ABLE TO USE THIS PROGRAM SAFELY
https://github.blog/2023-03-23-we-updated-our-rsa-ssh-host-key/
This blog post seemed very normal until I hit this bit
GITHUB ACCIDENTALLY POSTED THEIR PRIVATE KEYS TO GITHUB
THERE IS LITERALLY NO ONE ON EARTH ABLE TO USE THIS PROGRAM SAFELY
https://github.blog/2023-03-23-we-updated-our-rsa-ssh-host-key/
@edaross Instead of AI, why not try writing a computer program
Maybe ?just maybe ?? this could be a suitable place for.... some AI? Have files checked for things that look like Private Keys (and other things the user probably doesn't want to upload), and highlight that before uploading so the user can confirm or refuse the upload as needed?
(And also education about how to design your system so there is less chance of uploading Private Keys in the first place?)
@esther @mcc that's because git is a versioning system and follows unix-esque KISS principle.
It doesn't have any knowledge of what a file extension is.
Usually some [partly commercialized] version systems & management platforms like #GitLab and #gitea should have some options to do so - similar to branch protection...
@mcc I’m baffled that git still doesn’t at least have some sensible defaults about what types of files maybe should have an extra confirm step before committing
What psychopath capitalizes it "GitHub?"
@Tathar …Github does. The linked article was posted by Github, and Github spells Github "GitHub"
GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.
All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.