|
|
|
|
|
by ansible
1678 days ago
|
|
I like all these ideas. > Long-term, maybe some kind of sandbox for dependencies could make sense. Lots of dependencies don't need disk or network access. Just like with Android permissions, we could audit the crate sources to list out what functions it uses (out of the standard library or where ever) and provide an indication of that this particular crate is capable of. |
|
https://agoric.com/blog/technology/ses-securing-javascript/
https://medium.com/agoric/pola-would-have-prevented-the-even...