|
|
|
|
|
by hnlmorg
1795 days ago
|
|
But if you are willing to own that responsibility then you should read the code you're importing to begin with. I know I do but I also know most people don't bother. I do acknowledge that there will always be bugs that are identified by your users but equally if you're not auditing your dependencies first then it's hard to argue that you're not just passing off that responsibility wholesale to your users. |
|