• ZeDoTelhado@lemmy.world
    link
    fedilink
    English
    arrow-up
    21
    ·
    1 month ago

    That is some wild shit. Anyways for anyone else somewhat new to all this: when hosting anything, try to stick to reputable projects 1st and be always wary of shady installation tactics (I believe yesterday someone posted about curl bash. This is just a single example). If you want to try something new (as in brand new project), try it isolated 1st on some VM (proxmox helps a lot with this). When you are confident and more people give an approval, then think about putting on the main environment

    • irmadlad@lemmy.world
      link
      fedilink
      English
      arrow-up
      9
      ·
      1 month ago

      try to stick to reputable projects 1st and be always wary of shady installation tactics

      One of the first things I look for are longevity, last updated/activity, and then I look at the issues posted and responses. I like mature apps because I don’t possess the intelligence to audit code.

        • irmadlad@lemmy.world
          link
          fedilink
          English
          arrow-up
          2
          ·
          30 days ago

          So that takes care of the ‘last updated/acticity’ portion of the trifecta. How about longevity and issues posted and responses. I really know very little about the project as 'arr apps aren’t my bag.

    • i_am_not_a_robot@discuss.tchncs.de
      link
      fedilink
      English
      arrow-up
      1
      arrow-down
      2
      ·
      1 month ago

      curl bash is not as bad as people think. Nobody downloads and reverse engineers binary packages off of these websites before running them with the same permissions.