Sometimes, the best way to harden a service is to outsource it.
I've dabbled with running my own CI service for PRs. Running *arbitrary* third party patches is scary. Malware! Crypto miners!
It's really nice not having to worry about that.
miniblog.
Related Posts
Delighted to see that Typescript 7 is moving to conventional LSP for its IDE services!
I'm always hesitant when I see digital services funded by a single one-off payment. Running a service requires ongoing funding.
You sometimes see this with games that have a multiplayer component. People buy the game, but the multiplayer servers won't last forever.
OSS components are so common in software stacks now. It might be an interesting exercise to try to build a e.g. a web service with 100% proprietary components.
