Hacker News new | ask | show | jobs
by zeeZ 3661 days ago
Plus, if you're super paranoid, pulling doesn't require leaving any ports open and software listening on the repository.
1 comments

But it requires leaving a port open on the DB server where an attacker can get a whole copy of your database, or destroy it.
Many database servers are not serving databases solely to themselves and have that port open as part of the normal course of operation.