[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]

Re: Question about web applications



On 06/04/2009 03:53 PM, Paulo Cavalcanti wrote:
> Hi,
> 
> I submitted ampache (http://ampache.org/) for review, but I was told
> that it could not use any external software
> bundled in the code. In fact, it uses getid3, a file that seems to come
> from horde (horde/Browser.php),
> and some others.

Submit separate review requests for independent projects bundled within
the source and add them as dependencies once they are approved.

> Does it make any sense to fiddle something that has always had security
> as a prime concern?

Yes, security is precisely one of the concerns with bundling independent
sources together since bug fixes and security vulnerabilities will exist
hidden.

Rahul


[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]